FIF-IoT: A Forensic Investigation Framework for IoT Using a Public Digital Ledger

被引:47
作者
Hossain, Mahmud [1 ]
Karim, Yasser [1 ]
Hasan, Ragib [1 ]
机构
[1] Univ Alabama Birmingham, Dept Comp Sci, Birmingham, AL 35294 USA
来源
2018 IEEE INTERNATIONAL CONGRESS ON INTERNET OF THINGS (ICIOT) | 2018年
基金
美国国家科学基金会;
关键词
Forensics; Cybercrime; Attack; Investigation;
D O I
10.1109/ICIOT.2018.00012
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
The increased deployment of Internet of Things (IoT) devices will make them targets for attacks. IoT devices can also be used as tools for committing crimes. In this regard, we propose FIF-IoT-a forensic investigation framework using a public digital ledger to find facts in criminal incidents in IoT-based systems. FIF-IoT collects interactions that take place among various IoT entities (clouds, users, and IoT devices) as evidence and store them securely as transactions in a public, distributed and decentralized blockchain network which is similar to the Bitcoin network. Hence, FIF-IoT eliminates a single entity's control over the evidence storage, avoids single-point-of-failure on the storage media, and ensures high availability of evidence. FIF-IoT presents a framework that ensures integrity, confidentiality, anonymity, and non-repudiation of the evidence stored in the public digital ledger. Furthermore, FIF-IoT provides a mechanism to acquire evidence from the ledger and to verify the integrity of the obtained evidence. We present a case study of a forensic investigation to demonstrate that FIF-IoT is secure against evidence tampering. We also implement a prototype to evaluate the performance of FIF-IoT.
引用
收藏
页码:33 / 40
页数:8
相关论文
共 30 条
[1]  
[Anonymous], ARXIV13026312
[2]  
[Anonymous], COLLABORATECOM
[3]  
Aranha D.F., RELIC is an Efficient LIbrary for Cryptography
[4]  
*BOUNC CASTL, LEG BOUNC CASTL
[5]  
Campagna M., 2013, SEC 4 ELLIPTIC CURVE, V4, P32
[6]  
Cicirelli F., 2017, FUTURE GENERATION CO
[7]  
Contik, 2017, CONT AP MEAS EN CONS
[8]  
Contiki, 2016, CONT OS OP SYST INT
[9]  
Dandala T. T., 2017, ICCCSP
[10]  
Ethereum, 2017, PLATF BLOCKCH BAS AP