RADIS: Remote Attestation of Distributed IoT Services

07/26/2018
by   Mauro Conti, et al.
0

Remote attestation is a security technique by which a potentially untrusted device called Prover can evidence its current state to an external trusted party called Verifier. The main goal of a remote attestation protocol is to guarantee the reliability of the evidence, such that the Verifier can verify remotely the trustworthiness of the Prover. In the Internet of Things (IoT) systems, which are increasingly becoming exposed to a broad range of exploitations, the existing remote attestation protocols aim to check the integrity of each individual IoT device by detecting the modified softwares and physical tampering attacks. However, in an interconnected IoT system, in which IoT devices interact autonomously among themselves, a compromised IoT service can influence the genuine operation of other invoked service, without changing the software. In this paper, we show how a compromised service in a distributed IoT service can induce malicious behavior on genuine services, and we highlight the need for distributed services attestation. We propose a protocol for Remote Attestation of Distributed IoT Services (RADIS), which provides a complete evidence about the trustworthiness of distributed IoT services. RADIS relies on a control-flow attestation technique to detect IoT services that perform an unexpected operation due to their interactions with a malicious remote service. Additionally, RADIS traces the interactions between IoT distributed services, allowing the Verifier to check whether the activities follow a legitimate interaction model. We discuss the effectiveness of our protocol in validating the integrity status of a distributed IoT service.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
05/06/2021

Remote Attestation: A Literature Review

With the rising number of IoT devices, the security of such devices beco...
research
09/22/2017

Correctness of the Chord Protocol

Internet of Things (IoT) can be seen as a cooperation of the various het...
research
11/18/2018

slimIoT: Scalable Lightweight Attestation Protocol For the Internet of Things

The Internet of Things (IoT) is increasingly intertwined with critical i...
research
05/24/2023

IoT Threat Detection Testbed Using Generative Adversarial Networks

The Internet of Things(IoT) paradigm provides persistent sensing and dat...
research
07/11/2021

BLINDTRUST: Oblivious Remote Attestation for Secure Service Function Chains

With the rapidly evolving next-generation systems-of-systems, we face ne...
research
01/15/2019

Blockchain enabled fog structure to provide data security in IoT applications

IoT provides services by connecting smart devices to the Internet, and e...
research
11/18/2018

WISE: Lightweight Intelligent Swarm Attestation Scheme for IoT (The Verifier's Perspective)

The growing pervasiveness of Internet of Things (IoT) expands the attack...

Please sign up or login with your details

Forgot password? Click here to reset