Deakin University
Browse

Integrated proactive defense for software defined Internet of Things under multi-target attacks

conference contribution
posted on 2020-01-01, 00:00 authored by Weilun Liu, Mengmeng Ge, Dong Seong Kim
Due to the constrained resource and computational limitation of many Internet of Things (IoT) devices, conventional security protections, which require high computational overhead are not suitable to be deployed. Thus, vulnerable IoT devices could be easily exploited by attackers to break into networks. In this paper, we employ cyber deception and moving target defense (MTD) techniques to proactively change the network topology with both real and decoy nodes with the support of software-defined networking (SDN) technology and investigate the impact of single-target and multi-target attacks on the effectiveness of the integrated mechanism via a hierarchical graphical security model with security metrics. We also implement a web-based visualization interface to show topology changes with highlighted attack paths. Finally, the qualitative security analysis is performed for a small-scale and SDN-supported IoT network with different combinations of decoy types and levels of attack intelligence. Simulation results show the integrated defense mechanism can introduce longer mean-time-to-security-failure and larger attack impact under the multi-target attack, compared with the single-target attack model. In addition, adaptive shuffling has better performance than fixed interval shuffling in terms of a higher proportion of decoy paths, longer mean-time-to-security-failure and largely reduced defense cost.

History

Pagination

767-774

Location

Melbourne, Vic.

Start date

2020-05-11

End date

2020-05-14

ISBN-13

978-1-7281-6095-5

Language

eng

Publication classification

E1 Full written paper - refereed

Editor/Contributor(s)

Lefevre L, Varela CA, Pallis G, Toosi AN, Rana O, Buyya R

Title of proceedings

CCGRID : Proceedings of the 2020 20th IEEE/ACM International Symposium on Cluster, Cloud and Internet Computing

Event

IEEE Computer Society. International Symposium (20th : 2020 : Melbourne, Vic.)

Publisher

Institute of Electrical and Electronics Engineers

Place of publication

Piscataway, N.J.

Series

IEEE Computer Society International Symposium

Usage metrics

    Research Publications

    Categories

    No categories selected

    Exports

    RefWorks
    BibTeX
    Ref. manager
    Endnote
    DataCite
    NLM
    DC