RMIT University
Browse

A framework for automating security analysis of the internet of things

journal contribution
posted on 2024-11-02, 17:54 authored by Mengmeng Ge, Jin-Bum Hong, Walter Guttmann, Dong Seong Kim
The Internet of Things (IoT) is enabling innovative applications in various domains. Due to its heterogeneous and wide-scale structure, it introduces many new security issues. To address this problem, we propose a framework for modeling and assessing the security of the IoT and provide a formal definition of the framework. Generally, the framework consists of five phases: (1) data processing, (2) security model generation, (3) security visualization, (4) security analysis, and (5) model updates. Using the framework, we can find potential attack scenarios in the IoT, analyze the security of the IoT through well-defined security metrics, and assess the effectiveness of different defense strategies. The framework is evaluated via three scenarios, which are the smart home, wearable healthcare monitoring and environment monitoring scenarios. We use the analysis results to show the capabilities of the proposed framework for finding potential attack paths and mitigating the impact of attacks.

History

Related Materials

  1. 1.
    DOI - Is published in 10.1016/j.jnca.2017.01.033
  2. 2.
    ISSN - Is published in 10848045

Journal

Journal of Network and Computer Applications

Volume

83

Start page

12

End page

27

Total pages

16

Publisher

Elsevier

Place published

United Kingdom

Language

English

Copyright

© 2017 Elsevier Ltd. All rights reserved.

Former Identifier

2006110116

Esploro creation date

2021-09-30

Usage metrics

    Scholarly Works

    Exports

    RefWorks
    BibTeX
    Ref. manager
    Endnote
    DataCite
    NLM
    DC