Early Detection of Reconnaissance Attacks on IoT Devices by Analyzing Performance and Traffic Characteristics

被引:1
|
作者
Keshavamurthy, Prathibha [1 ]
Kulkarni, Sarvesh [1 ]
机构
[1] Villanova Univ, Dept Elect & Comp Engn, Villanova, PA 19085 USA
关键词
reconnaissance attack; IoT; security;
D O I
10.1109/CSR57506.2023.10224986
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Cyber attackers use various techniques to gather information about a target in order to identify the vulnerabilities of the target and plan their attack on the target. The first step in planning an attack is reconnaissance. A simple port scan can reveal a lot of useful information about the target machine. Open source tools like 'nmap' can quickly scan and gather significant information about hosts on the Internet and provide a great insight into these systems. One cannot attack a system that is not visible to them. When a target system does not respond to scans by attackers, that can be an effective 'prevention is better than cure' approach to defense. When a host is actively scanned for multiple open ports by one or more sources, unusual transformations occur in its CPU utilization, the number of incoming and outgoing packets and their average sizes. The purpose of this work is to identify the reliable anomaly markers and demonstrate how they may be used in detecting and preventing reconnaissance scans extremely quickly. We demonstrate promising results for automated early reconnaissance detection and blocking, with live packet capture and analysis. Our proposed solution requires only modest computational resources and can thus operate on resource-constrained Internet of Things (IoT) devices and other embedded systems.
引用
收藏
页码:187 / 193
页数:7
相关论文
共 50 条
  • [1] Analysis of Machine Learning Classifiers for Early Detection of DDoS Attacks on IoT Devices
    Gaur, Vimal
    Kumar, Rajneesh
    ARABIAN JOURNAL FOR SCIENCE AND ENGINEERING, 2022, 47 (02) : 1353 - 1374
  • [2] Analysis of Machine Learning Classifiers for Early Detection of DDoS Attacks on IoT Devices
    Vimal Gaur
    Rajneesh Kumar
    Arabian Journal for Science and Engineering, 2022, 47 : 1353 - 1374
  • [3] Network Traffic Characteristics of IoT Devices in Smart Homes
    Mainuddin, Md
    Duan, Zhenhai
    Dong, Yingfei
    30TH INTERNATIONAL CONFERENCE ON COMPUTER COMMUNICATIONS AND NETWORKS (ICCCN 2021), 2021,
  • [4] SPOT: Analyzing IoT Ransomware Attacks using Bare Metal NAS Devices
    Yasui, Hiroki
    Inoue, Takahiro
    Sasaki, Takayuki
    Tanabe, Rui
    Yoshioka, Katsunari
    Matsumoto, Tsutomu
    2022 17TH ASIA JOINT CONFERENCE ON INFORMATION SECURITY, ASIAJCIS, 2022, : 16 - 23
  • [5] Enhancing IoT Device Security: Predicting and Analyzing Reconnaissance Attacks Using Flags and Time-Based Attributes
    Sharmin, Nazia
    Kiekintveld, Christopher
    2023 10TH INTERNATIONAL CONFERENCE ON INTERNET OF THINGS: SYSTEMS, MANAGEMENT AND SECURITY, IOTSMS, 2023, : 23 - 30
  • [6] Detecting DDoS attacks by analyzing the dynamics and interrelation of network traffic characteristics
    Krasnov, A. E.
    Nadezhdin, E. N.
    Nikol'skii, D. N.
    Repin, D. S.
    Galyaev, V. S.
    VESTNIK UDMURTSKOGO UNIVERSITETA-MATEMATIKA MEKHANIKA KOMPYUTERNYE NAUKI, 2018, 28 (03): : 407 - 418
  • [7] Type classification and identification of IoT devices by using traffic characteristics
    Du, Ruizhong
    Li, Shuai
    WIRELESS NETWORKS, 2025, 31 (01) : 1 - 17
  • [8] TCN enhanced novel malicious traffic detection for IoT devices
    Liu Xin
    Liu Ziang
    Zhang Yingli
    Zhang Wenqiang
    Lv Dong
    Zhou Qingguo
    CONNECTION SCIENCE, 2022, 34 (01) : 1322 - 1341
  • [9] Detection of DDoS Attacks on Urban IoT Devices Using Neural Networks
    Obetta, Simon Onyebuchi
    Moldovan, Arghir-Nicolae
    PROCEEDINGS OF THE 8TH INTERNATIONAL CONFERENCE ON INTERNET OF THINGS, BIG DATA AND SECURITY, IOTBDS 2023, 2023, : 236 - 242
  • [10] Analyzing Adversarial Attacks Against Deep Learning for Intrusion Detection in IoT Networks
    Ibitoye, Olakunle
    Shafiq, Omair
    Matrawy, Ashraf
    2019 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM), 2019,