Javascript must be enabled to continue!
Preventing MQTT Vulnerabilities Using IoT-Enabled Intrusion Detection System
View through CrossRef
The advancement in the domain of IoT accelerated the development of new communication technologies such as the Message Queuing Telemetry Transport (MQTT) protocol. Although MQTT servers/brokers are considered the main component of all MQTT-based IoT applications, their openness makes them vulnerable to potential cyber-attacks such as DoS, DDoS, or buffer overflow. As a result of this, an efficient intrusion detection system for MQTT-based applications is still a missing piece of the IoT security context. Unfortunately, existing IDSs do not provide IoT communication protocol support such as MQTT or CoAP to validate crafted or malformed packets for protecting the protocol implementation vulnerabilities of IoT devices. In this paper, we have designed and developed an MQTT parsing engine that can be integrated with network-based IDS as an initial layer for extensive checking against IoT protocol vulnerabilities and improper usage through a rigorous validation of packet fields during the packet-parsing stage. In addition, we evaluate the performance of the proposed solution across different reported vulnerabilities. The experimental results demonstrate the effectiveness of the proposed solution for detecting and preventing the exploitation of vulnerabilities on IoT protocols.
Title: Preventing MQTT Vulnerabilities Using IoT-Enabled Intrusion Detection System
Description:
The advancement in the domain of IoT accelerated the development of new communication technologies such as the Message Queuing Telemetry Transport (MQTT) protocol.
Although MQTT servers/brokers are considered the main component of all MQTT-based IoT applications, their openness makes them vulnerable to potential cyber-attacks such as DoS, DDoS, or buffer overflow.
As a result of this, an efficient intrusion detection system for MQTT-based applications is still a missing piece of the IoT security context.
Unfortunately, existing IDSs do not provide IoT communication protocol support such as MQTT or CoAP to validate crafted or malformed packets for protecting the protocol implementation vulnerabilities of IoT devices.
In this paper, we have designed and developed an MQTT parsing engine that can be integrated with network-based IDS as an initial layer for extensive checking against IoT protocol vulnerabilities and improper usage through a rigorous validation of packet fields during the packet-parsing stage.
In addition, we evaluate the performance of the proposed solution across different reported vulnerabilities.
The experimental results demonstrate the effectiveness of the proposed solution for detecting and preventing the exploitation of vulnerabilities on IoT protocols.
Related Results
Access mechanisms for massive Internet of Things in 5G and beyond networks
Access mechanisms for massive Internet of Things in 5G and beyond networks
(English) The Massive Internet of Things (MIoT) characterizes a communication scenario where a massive number of battery-operated devices perform infrequent, primarily uplink-orien...
REMOTE-CONTROLLED HOME APPLIANCE SYSTEM VIA MQTT AND ESP8266
REMOTE-CONTROLLED HOME APPLIANCE SYSTEM VIA MQTT AND ESP8266
The Remote-Controlled Home Appliance System via MQTT and ESP8266 is an IoTbased smart automation solution designed to enable seamless, real-time, and remote operation of household ...
Living in the Dark: MQTT-Based Exploitation of IoT Security Vulnerabilities in ZigBee Networks for Smart Lighting Control
Living in the Dark: MQTT-Based Exploitation of IoT Security Vulnerabilities in ZigBee Networks for Smart Lighting Control
The Internet of Things (IoT) has provided substantial enhancements to the communication of sensors, actuators, and their controllers, particularly in the field of home automation. ...
A study of secure communication scheme in MQTT: TLS vs AES cryptography
A study of secure communication scheme in MQTT: TLS vs AES cryptography
The Internet of Things (IoT) technology requires low latency communications. One of the lightweight protocols in the IoT is the MQTT protocol. However, the MQTT protocol is not equ...
Implementação de um sstema Gateway MQTT-Modbus para abstração de redes industriais
Implementação de um sstema Gateway MQTT-Modbus para abstração de redes industriais
Este trabalho apresenta o desenvolvimento de um sistema gateway MQTT-Modbus projetado para a abstração de redes industriais. A solução proposta visa integrar redes industriais lega...
Pelatihan Internet of Things (IoT) dalam peningkatan kompetensi siswa multimedia di SMK Perguruan Buddhi
Pelatihan Internet of Things (IoT) dalam peningkatan kompetensi siswa multimedia di SMK Perguruan Buddhi
Pelatihan Internet of Things (IoT) menjadi bagian penting dalam pengembangan kompetensi siswa jurusan multimedia di SMK Perguruan Buddhi. Era digital menuntut adanya pemahaman mend...
Development and application of biological intelligence technology in computer
Development and application of biological intelligence technology in computer
To study the development and application of biological intelligence technology in computers and realize high-precision network anomaly detection, a distributed intrusion detection ...
A Review of Performance, Energy and Privacy of Intrusion Detection Systems for IoT
A Review of Performance, Energy and Privacy of Intrusion Detection Systems for IoT
Internet of Things (IoT) forms the foundation of next generation infrastructures, enabling development of future cities that are inherently sustainable. Intrusion detection for suc...

