Matches in SemOpenAlex for { <https://semopenalex.org/work/W3186703302> ?p ?o ?g. }
- W3186703302 endingPage "104280" @default.
- W3186703302 startingPage "104261" @default.
- W3186703302 abstract "Internet of Things is a widely adopted and pervasive technology, but also one of the most relevant in cyber-security, given the volume and sensitivity of shared data and the availability of affordable but insecure products. In this paper, we propose a novel cyber-threat exploiting the Message Queue Telemetry Transport (MQTT) protocol to implement a tunneling attack. In IoT networks, sensitive and critical information are exchanged between devices or external systems to perform data analysis. For this reason, a tunneling threat could be adopted by a malicious user to steal information. In this context, a tunneling system based on MQTT can be considered since this communication protocol could be allowed to pass through enterprise firewalls because it is widely adopted in this IoT world. An attacker can exploit the MQTT protocol for various purposes such as steal information or access to not-allowed websites/servers. In particular in this work, we contribute in two main points: initially we demonstrate how the proposed threat is able to encapsulate messages through the MQTT protocol, by also comparing it with other tunneling systems exploiting different communication protocols. Obtained results show that exploiting MQTT for tunneling purposes is a good choice, compared to other communication protocols, especially for payloads up to 3000 bytes. Then, we propose and validate an initial machine learning based approach able to detect the proposed MQTT tunnel, by comparing different detection algorithms tested with and without a hyperparameter optimization, in terms of accuracy, F1 score and Receiver Operating Characteristic (ROC) curve. In this case, obtained results show that some algorithms are able to identify the attack, with an accuracy exceeding 95%, while others lack of such capability." @default.
- W3186703302 created "2021-08-02" @default.
- W3186703302 creator A5030029772 @default.
- W3186703302 creator A5051577928 @default.
- W3186703302 creator A5052730290 @default.
- W3186703302 creator A5059792906 @default.
- W3186703302 creator A5068972128 @default.
- W3186703302 date "2021-01-01" @default.
- W3186703302 modified "2023-09-27" @default.
- W3186703302 title "Exploiting Internet of Things Protocols for Malicious Data Exfiltration Activities" @default.
- W3186703302 cites W1487185763 @default.
- W3186703302 cites W1524156700 @default.
- W3186703302 cites W1907846276 @default.
- W3186703302 cites W1966742696 @default.
- W3186703302 cites W1980851144 @default.
- W3186703302 cites W1993704367 @default.
- W3186703302 cites W2026810221 @default.
- W3186703302 cites W2027893335 @default.
- W3186703302 cites W2060949882 @default.
- W3186703302 cites W2076003763 @default.
- W3186703302 cites W2106732331 @default.
- W3186703302 cites W2126467210 @default.
- W3186703302 cites W2157825442 @default.
- W3186703302 cites W2160236704 @default.
- W3186703302 cites W2165413796 @default.
- W3186703302 cites W2166774118 @default.
- W3186703302 cites W2246286794 @default.
- W3186703302 cites W2247412367 @default.
- W3186703302 cites W2329612710 @default.
- W3186703302 cites W2333941540 @default.
- W3186703302 cites W2571671984 @default.
- W3186703302 cites W2578649485 @default.
- W3186703302 cites W2604813584 @default.
- W3186703302 cites W2609495336 @default.
- W3186703302 cites W2735562755 @default.
- W3186703302 cites W2761800654 @default.
- W3186703302 cites W2779139350 @default.
- W3186703302 cites W2783007605 @default.
- W3186703302 cites W2786647169 @default.
- W3186703302 cites W2794563095 @default.
- W3186703302 cites W2807123401 @default.
- W3186703302 cites W2810749629 @default.
- W3186703302 cites W2875475762 @default.
- W3186703302 cites W2888348322 @default.
- W3186703302 cites W2888498043 @default.
- W3186703302 cites W2892556724 @default.
- W3186703302 cites W2892961746 @default.
- W3186703302 cites W2901711964 @default.
- W3186703302 cites W2908115006 @default.
- W3186703302 cites W2910385575 @default.
- W3186703302 cites W2911540878 @default.
- W3186703302 cites W2915432143 @default.
- W3186703302 cites W2918639172 @default.
- W3186703302 cites W2944210580 @default.
- W3186703302 cites W2944418656 @default.
- W3186703302 cites W2945594226 @default.
- W3186703302 cites W2946893466 @default.
- W3186703302 cites W2949676527 @default.
- W3186703302 cites W2955014922 @default.
- W3186703302 cites W2957283238 @default.
- W3186703302 cites W2967521687 @default.
- W3186703302 cites W2979913022 @default.
- W3186703302 cites W2982062238 @default.
- W3186703302 cites W2983008824 @default.
- W3186703302 cites W2985985298 @default.
- W3186703302 cites W2988389629 @default.
- W3186703302 cites W2988578200 @default.
- W3186703302 cites W2990495437 @default.
- W3186703302 cites W2993004395 @default.
- W3186703302 cites W3000307855 @default.
- W3186703302 cites W3001329157 @default.
- W3186703302 cites W3003685271 @default.
- W3186703302 cites W3004918327 @default.
- W3186703302 cites W3005380019 @default.
- W3186703302 cites W3008450544 @default.
- W3186703302 cites W3008551695 @default.
- W3186703302 cites W3009983180 @default.
- W3186703302 cites W3011388169 @default.
- W3186703302 cites W3016223321 @default.
- W3186703302 cites W3019933808 @default.
- W3186703302 cites W3027336681 @default.
- W3186703302 cites W3033136171 @default.
- W3186703302 cites W3035366542 @default.
- W3186703302 cites W3045855741 @default.
- W3186703302 cites W3087039431 @default.
- W3186703302 cites W3098620325 @default.
- W3186703302 cites W3105684144 @default.
- W3186703302 cites W3128667667 @default.
- W3186703302 doi "https://doi.org/10.1109/access.2021.3099642" @default.
- W3186703302 hasPublicationYear "2021" @default.
- W3186703302 type Work @default.
- W3186703302 sameAs 3186703302 @default.
- W3186703302 citedByCount "6" @default.
- W3186703302 countsByYear W31867033022022 @default.
- W3186703302 countsByYear W31867033022023 @default.
- W3186703302 crossrefType "journal-article" @default.
- W3186703302 hasAuthorship W3186703302A5030029772 @default.
- W3186703302 hasAuthorship W3186703302A5051577928 @default.