AI4SAFE-IoT: an AI-powered secure architecture for edge layer of Internet of things

被引:37
作者
HaddadPajouh, Hamed [1 ,2 ]
Khayami, Raouf [1 ]
Dehghantanha, Ali [2 ]
Choo, Kim-Kwang Raymond [3 ]
Parizi, Reza M. [4 ]
机构
[1] Shiraz Univ Technol, Shiraz, Iran
[2] Univ Guelph, Guelph, ON, Canada
[3] Univ Texas San Antonio, San Antonio, TX USA
[4] Kennesaw State Univ, Marietta, GA USA
关键词
Internet of things; IoT; Service-oriented architecture; Secure architecture; Artificial intelligence; Fog computing; Edge layer; EXECUTION ENVIRONMENT; IOT; SERVICES; TAXONOMY;
D O I
10.1007/s00521-020-04772-3
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
With the increasing use of the Internet of things (IoT) in diverse domains, security concerns and IoT threats are constantly rising. The computational and memory limitations of IoT devices have resulted in emerging vulnerabilities in most IoT-run environments. Due to the low processing ability, IoT devices are often not capable of running complex defensive mechanisms. Lack of an architecture for a safer IoT environment is referred to as the most important barrier in developing a secure IoT system. In this paper, we propose a secure architecture for IoT edge layer infrastructure, called AI4SAFE-IoT. This architecture is built upon AI-powered security modules at the edge layer for protecting IoT infrastructure. Cyber threat attribution, intelligent web application firewall, cyber threat hunting, and cyber threat intelligence are the main modules proposed in our architecture. The proposed modules detect, attribute, and further identify the stage of an attack life cycle based on the Cyber Kill Chain model. In the proposed architecture, we define each security module and show its functionality against different threats in real-world applications. Moreover, due to the integration of AI security modules in a different layer of AI4SAFE-IoT, each threat in the edge layer will be handled by its corresponding security module delivered by a service. We compared the proposed architecture with the existing models and discussed our architecture independence of the underlying IoT layer and its comparatively low overhead according to delivering security as service for the edge layer of IoT architecture instead of embed implementation. Overall, we evaluated our proposed architecture based on the IoT service management score. The proposed architecture obtained 84.7 out of 100 which is the highest score among peer IoT edge layer security architectures.
引用
收藏
页码:16119 / 16133
页数:15
相关论文
共 66 条
  • [1] Service Management for IoT: Requirements, Taxonomy, Recent Advances and Open Research Challenges
    Ahmed, Abdelmuttlib Ibrahim Abdalla
    Gani, Abdullah
    Ab Hamid, Siti Hafizah
    Abdelmaboud, Abdelzahir
    Syed, Hassan Jamil
    Mohamed, Riyaz Ahamed Ariyaluran Habeeb
    Ali, Ihsan
    [J]. IEEE ACCESS, 2019, 7 : 155472 - 155488
  • [2] Internet of Things security: A survey
    Alaba, Fadele Ayotunde
    Othman, Mazliza
    Hashem, Ibrahim Abaker Targio
    Alotaibi, Faiz
    [J]. JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2017, 88 : 10 - 28
  • [3] [Anonymous], 2018, ARXIV180711023
  • [4] [Anonymous], 2012, THE 2ND INTERNATIONA, DOI DOI 10.1109/CECNET.2012.6201508
  • [5] Antonakakis M, 2017, PROCEEDINGS OF THE 26TH USENIX SECURITY SYMPOSIUM (USENIX SECURITY '17), P1093
  • [6] Detecting crypto-ransomware in IoT networks based on energy consumption footprint
    Azmoodeh, Amin
    Dehghantanha, Ali
    Conti, Mauro
    Choo, Kim-Kwang Raymond
    [J]. JOURNAL OF AMBIENT INTELLIGENCE AND HUMANIZED COMPUTING, 2018, 9 (04) : 1141 - 1152
  • [7] RIOT: An Open Source Operating System for Low-End Embedded Devices in the IoT
    Baccelli, Emmanuel
    Gundogan, Cenk
    Hahm, Oliver
    Kietzmann, Peter
    Lenders, Martine S.
    Petersen, Hauke
    Schleiser, Kaspar
    Schmidt, Thomas C.
    Waehlisch, Matthias
    [J]. IEEE INTERNET OF THINGS JOURNAL, 2018, 5 (06): : 4428 - 4440
  • [8] Bahrami PN, 2019, J INF PROCESS SYST, V15, P865
  • [9] I-SEP: An Improved Routing Protocol for Heterogeneous WSN for IoT-Based Environmental Monitoring
    Behera, Trupti Mayee
    Mohapatra, Sushanta Kumar
    Samal, Umesh Chandra
    Khan, Mohammad S.
    Daneshmand, Mahmoud
    Gandomi, Amir H.
    [J]. IEEE INTERNET OF THINGS JOURNAL, 2020, 7 (01) : 710 - 717
  • [10] Energy-Efficient Routing for Greenhouse Monitoring using Heterogeneous Sensor Networks
    Behera, Trupti Mayee
    Khan, Mohammad S.
    Mohapatra, S. K.
    Samal, Umesh Chandra
    Bhuiyan, Md Zakirul Alam
    [J]. 2019 INTERNATIONAL CONFERENCE ON INTERNET OF THINGS (ITHINGS) AND IEEE GREEN COMPUTING AND COMMUNICATIONS (GREENCOM) AND IEEE CYBER, PHYSICAL AND SOCIAL COMPUTING (CPSCOM) AND IEEE SMART DATA (SMARTDATA), 2019, : 953 - 958