Keeping the Smart Home Private with Smart(er) IoT Traffic Shaping

12/03/2018
by   Noah Apthorpe, et al.
0

The proliferation of smart home Internet of Things (IoT) devices presents unprecedented challenges for preserving privacy within the home. In this paper, we demonstrate that a passive network observer (e.g., an Internet service provider) can infer private in-home activities by analyzing Internet traffic from commercially available smart home devices even when the devices use end-to-end transport-layer encryption. We evaluate common approaches for defending against these types of traffic analysis attacks, including firewalls, virtual private networks, and independent link padding, and find that none sufficiently conceal user activities with reasonable data overhead. We develop a new defense, "stochastic traffic padding" (STP), that makes it difficult for a passive network adversary to reliably distinguish genuine user activities from generated traffic patterns designed to look like user interactions. Our analysis provides a theoretical bound on an adversary's ability to accurately detect genuine user activities as a function of the amount of additional cover traffic generated by the defense technique.

READ FULL TEXT
research
08/22/2018

A Developer-Friendly Library for Smart Home IoT Privacy-Preserving Traffic Obfuscation

The number and variety of Internet-connected devices have grown enormous...
research
08/31/2019

Your Smart Home Can't Keep a Secret: Towards Automated Fingerprinting of IoT Traffic with Neural Networks

The IoT (Internet of Things) technology has been widely adopted in recen...
research
08/08/2018

Peek-a-Boo: I see your smart home activities, even encrypted!

A myriad of IoT devices such as bulbs, switches, speakers in a smart hom...
research
01/24/2019

Verifiable Round-Robin Scheme for Smart Homes

Advances in sensing, networking, and actuation technologies have resulte...
research
04/08/2020

Canopy: A Verifiable Privacy-Preserving Token Ring based Communication Protocol for Smart Homes

This paper focuses on the new privacy challenges that arise in smart hom...
research
09/16/2020

The Dark (and Bright) Side of IoT: Attacks and Countermeasures to Identification of Smart Home Devices and Services

We present a new machine learning-based attack that exploits network pat...
research
04/20/2018

Piece of CAKE: A Comprehensive Queue Management Solution for Home Gateways

The last several years has seen a renewed interest in smart queue manage...

Please sign up or login with your details

Forgot password? Click here to reset