arrow
Return

A model checking-based security analysis framework for IoT systems

delete2021-06-01
delete18
delete
OA
AI
Z
Zheng Fang *
H
Hao Fu
Z
Zhiyun Qian
T
Trent Jaeger
胡鹏飞 (Pengfei Hu)
P
Prasant Mohapatra
DOI:10.1016/j.hcc.2021.100004delete
deleteOriginal
deleteShare
deleteSave
View PDF
Abstract

Abstract

En 中文
IoT systems are revolutionizing our life by providing ubiquitous computing, inter-connectivity, and automated control. However, the increasing system complexity poses huge challenges for security as IoT devices are dis-tributed, highly heterogeneous, and can directly interact with the physical environment. In IoT systems, bugs in device firmware, defects in network protocols, and design flaws in automation rules can lead to system breach or failure. The challenge gets even more escalated as the possible attacks may be chained together in a long sequence across multiple layers, rendering the existing vulnerability analysis frameworks inapplicable. In this paper, we present FORESEE , a model checking-based framework to comprehensively evaluate IoT system security. It builds a multi-layer IoT hypothesis graph by simultaneously modeling all of the essential components in IoT systems, including the physical environment, devices, communication protocols, and applications. The model checker can then analyze the generated hypothesis graph to validate system security properties or generate attack paths if there are any violations. An optimization algorithm is further introduced to reduce the computational complexity of our analysis. Our framework verifies hypothesis graphs with millions of nodes in less than 100 seconds. The illustrative case studies show that our framework can detect more potential threats than the existing approaches.
Keywords:
IoT
Security and privacy
Model checking
Hypothesis graph
AI Summary

AI Summary

Key information extracted from the uploaded paper, including a brief overview, abstract, background, key highlights, visual analysis, and future outlook.

Journal

H
High-Confidence Computing
IF:
3
Papers:
239
Citations:
407

Organization

U
university of california riverside
Scholars:
1.1W
Papers: 8.3K
Citations: 16
U
university of california davis
Scholars:
3.3W
Papers: 2.6W
Citations: 45
University of California System cover
University of California System
Scholars:
37.4W
Papers: 33.7W
Citations: 6.6K
M
Microsoft
Scholars:
3.0K
Papers: 2.7K
Citations: 7
researcher View more organizations