IANVS: A Moving Target Defense Framework for a Resilient Internet of Things - Archive ouverte HAL Accéder directement au contenu
Communication Dans Un Congrès Année : 2020

IANVS: A Moving Target Defense Framework for a Resilient Internet of Things

Håkon Sandaker
  • Fonction : Auteur
Frédéric Cuppens
  • Fonction : Auteur
Nora Cuppens
Laurent Toutain
Georgios Papadopoulos

Résumé

The Internet of Things (IoT) is more and more present in fundamental aspects of our societies and personal life. Billions of objects now have access to the Internet. This networking capability allows for new beneficial services and applications. However, it is also the entry-point for a wide variety of cyber-attacks that target these devices. The security measures present in real IoT systems lag behind those of the standard Internet. Security is sometimes completely absent. Moving Target Defense (MTD) is a 10-year-old cyber-defense paradigm. It proposes to randomize components of a system. Reasonably, an attacker will have a higher cost attacking an MTD-version of a system compared with a static-version of it. Even if MTD has been successfully applied to standard systems, its deployment for IoT is still lacking. In this paper, we propose a generic MTD framework suitable for IoT systems: IANVS (pronounced Janus). Our framework has a modular design. Its components can be adapted according to the specific constraints and requirements of a particular IoT system. We use it to instantiate two concrete MTD strategies. One that targets the UDP port numbers (port-hopping), and another a CoAP resource URI. We implement our proposal on real hardware using Pycom LoPy4 nodes. We expose the nodes to a remote Denial-of-Service attack and evaluate the effectiveness of the IANVS-based port-hopping MTD proposal.
Fichier principal
Vignette du fichier
03-For HAL-mtd-framework-ieee-conf.pdf (388.13 Ko) Télécharger le fichier
Origine : Fichiers produits par l'(les) auteur(s)

Dates et versions

hal-02887462 , version 1 (02-07-2020)
hal-02887462 , version 2 (05-02-2021)

Licence

Copyright (Tous droits réservés)

Identifiants

Citer

Renzo Efrain Navas, Håkon Sandaker, Frédéric Cuppens, Nora Cuppens, Laurent Toutain, et al.. IANVS: A Moving Target Defense Framework for a Resilient Internet of Things. The 25th IEEE Symposium on Computers and Communications (ISCC), Jul 2020, Rennes, France. pp.1-6, ⟨10.1109/ISCC50000.2020.9219728⟩. ⟨hal-02887462v2⟩
215 Consultations
527 Téléchargements

Altmetric

Partager

Gmail Facebook X LinkedIn More