论文标题

一个轻巧的移动目标防御框架,用于影响物联网设备的多用途恶意软件

A Lightweight Moving Target Defense Framework for Multi-purpose Malware Affecting IoT Devices

论文作者

von der Assen, Jan, Celdrán, Alberto Huertas, Sánchez, Pedro Miguel Sánchez, Cedeño, Jordan, Bovet, Gérôme, Pérez, Gregorio Martínez, Stiller, Burkhard

论文摘要

影响物联网(IoT)设备的恶意软件由于这种范式在现实世界中的相关性而迅速增长。专业文献还检测到了多功能恶意软件能够执行不同恶意动作的趋势,例如遥控,数据泄漏,加密或代码隐藏等。保护物联网设备免受此类恶意软件的影响,由于其众所周知的漏洞和CPU,内存和存储方面的限制是具有挑战性的。为了改善它,移动的目标防御(MTD)范式是十年前提出的,并显示出令人鼓舞的结果,但是缺乏用于多功能恶意软件的物联网MTD解决方案。因此,这项工作提出了四种MTD机制,可以更改IoT设备的网络,数据和运行时环境,以减轻多用途恶意软件。此外,它提出了一个轻巧且面向IoT的MTD框架,以决定如何部署MTD机制以及如何部署MTD机制。最后,在一个由多功能恶意软件影响的IOT频谱传感器的现实情况下评估了框架和MTD机制的效率和有效性。

Malware affecting Internet of Things (IoT) devices is rapidly growing due to the relevance of this paradigm in real-world scenarios. Specialized literature has also detected a trend towards multi-purpose malware able to execute different malicious actions such as remote control, data leakage, encryption, or code hiding, among others. Protecting IoT devices against this kind of malware is challenging due to their well-known vulnerabilities and limitation in terms of CPU, memory, and storage. To improve it, the moving target defense (MTD) paradigm was proposed a decade ago and has shown promising results, but there is a lack of IoT MTD solutions dealing with multi-purpose malware. Thus, this work proposes four MTD mechanisms changing IoT devices' network, data, and runtime environment to mitigate multi-purpose malware. Furthermore, it presents a lightweight and IoT-oriented MTD framework to decide what, when, and how the MTD mechanisms are deployed. Finally, the efficiency and effectiveness of the framework and MTD mechanisms are evaluated in a real-world scenario with one IoT spectrum sensor affected by multi-purpose malware.

扫码加入交流群

加入微信交流群

微信交流群二维码

扫码加入学术交流群,获取更多资源