Exact Markov Chain of Random Propagation of Malware With Network-Level Mitigation

被引:9
作者
Carnier, Rodrigo Matos [1 ]
Li, Yue [1 ]
Fujimoto, Yasutaka [1 ]
Shikata, Junji [2 ]
机构
[1] Yokohama Natl Univ, Dept Elect & Comp Engn, Yokohama 2408501, Japan
[2] Yokohama Natl Univ, Grad Sch Environm & Informat Sci, Yokohama 2408501, Japan
关键词
Malware; Internet of Things; Markov processes; Mathematical models; Statistics; Sociology; Security; Cyber security; internet of Things (IoT); malware; markov chain model; IOT; PREDICTION; SECURITY; INTERNET; SPREAD;
D O I
10.1109/JIOT.2023.3240421
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
the age of Internet of Things (IoT), exploitation of security vulnerabilities is increasing, including self-propagating IoT malware. As an answer, specific research on IoT malware is being developed. Many studies use Markov chain models of malware propagation to predict the behavior of epidemics qualitatively and quantitatively. However, most studies approximate random propagation as a simple multiplicative term and no exact derivation of the Markov chain for random propagation was done so far. Moreover, systems of malware mitigation operating at the network level are rare and the majority of proposals focus on local networks like wireless sensor networks. In this article, we present a simple derivation of the exact Markov chain for random propagation of malware. Our model assumes a binomial form, compatible with binomial distributions in stochastic studies. To validate this derivation we implemented a stochastic simulation for the simplest compartmental epidemic model, susceptible- infected-susceptible (SIS). Predictions of the proposed Markov chain match simulation results with less than 0.2% error, well within stochastic variability and much smaller than the error of literature models. To complement our model of propagation, we developed and derived the Markov chain of a new system of malware mitigation, based on grouping random devices with identified infections during malware cleaning. Our mitigation system works at the network level and counteracts the vulnerability of mass deployment of IoT devices with aggressive but calculated mass disconnection. The system is able to artificially reduce R-0 (the basic reproduction number) below 1 and prevent malware taking over the network-all without changing the rate of detection.
引用
收藏
页码:10933 / 10947
页数:15
相关论文
共 24 条
[1]   Modelling the Spread of Botnet Malware in IoT-Based Wireless Sensor Networks [J].
Acarali, Dilara ;
Rajarajan, Muttukrishnan ;
Komninos, Nikos ;
Zarpelao, B. B. .
SECURITY AND COMMUNICATION NETWORKS, 2019, 2019
[2]   Characterization and Prediction of Mobile-App Traffic Using Markov Modeling [J].
Aceto, Giuseppe ;
Bovenzi, Giampaolo ;
Ciuonzo, Domenico ;
Montieri, Antonio ;
Persico, Valerio ;
Pescape, Antonio .
IEEE TRANSACTIONS ON NETWORK AND SERVICE MANAGEMENT, 2021, 18 (01) :907-925
[3]   A Comprehensive Review on Malware Detection Approaches [J].
Aslan, Omer ;
Samet, Refik .
IEEE ACCESS, 2020, 8 :6249-6271
[4]   Attitudes and Perceptions of IoT Security in Critical Societal Services [J].
Asplund, Mikael ;
Nadjm-Tehrani, Simin .
IEEE ACCESS, 2016, 4 :2130-2138
[5]   New Frontiers in IoT: Networking, Systems, Reliability, and Security Challenges [J].
Bagchi, Saurabh ;
Abdelzaher, Tarek F. ;
Govindan, Ramesh ;
Shenoy, Prashant ;
Atrey, Akanksha ;
Ghosh, Pradipta ;
Xu, Ran .
IEEE INTERNET OF THINGS JOURNAL, 2020, 7 (12) :11330-11346
[6]   Botnets and Internet of Things Security [J].
Bertino, Elisa ;
Islam, Nayeem .
COMPUTER, 2017, 50 (02) :76-79
[7]  
Carnier R.M., 2020, P 7 IEEJ INT WORKSHO, P336
[8]  
Evans D., 2011, INTERNET THINGS HOW
[9]   Modeling, Analysis, and Mitigation of Dynamic Botnet Formation in Wireless IoT Networks [J].
Farooq, Muhammad Junaid ;
Zhu, Quanyan .
IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2019, 14 (09) :2412-2426
[10]   Detecting IoT Malware by Markov Chain Behavioral Models [J].
Ficco, Massimo .
2019 IEEE INTERNATIONAL CONFERENCE ON CLOUD ENGINEERING (IC2E), 2019, :229-234