半岛在线登录官网-半岛(中国)学术报告
报告题目: An Empirical Study of Security Protocols in Smart Home IoT Devices
主讲人:雷新雨,密歇根州立大学
报告时间:2019年6月21日(星期五) 下午3:00
报告地点:半岛在线登录官网-半岛(中国)(A区主教学大楼1811)
报告摘要: Wi-Fi IoT devices have been penetrating the smart home at a fast pace recently. Most device vendors enable users to control their IoT devices remotely via smartphones. The smart home IoT devices indeed bring users great convenience, but they may also create new attack vectors for adversaries. In this work, we conduct an empirical study on how the cryptographic/security protocols are supported on 40 popular Wi-Fi smart home IoT devices. We find that even some most fundamental security vulnerabilities still widely exist in today’s hot-selling smart home IoT devices. The detected vulnerabilities can be exploited by adversaries to gain unauthorized control of the victims’ IoT devices or have surveillance of the victims’ activities. Limited resources and functions on the IoT devices may thwart remote after-sales remedies. To secure the IoT devices, we present HomeGuardian framework which is deployed on the commercial off-the-shelf (COTS) home Wi-Fi routers. Our experimental results show that HomeGuardian can efficiently secure the IoT devices.
主讲人介绍:雷新雨,2015年在重庆大学获得博士学位。2016起在美国Michigan State University攻读博士学位。 2013年秋工作于Texas A&M University at Qatar(助理研究员)。2017年夏工作于美国福特汽车研究所(实习研究员)。研究方向包括云计算、物联网、区块链等。在IEEE TSC,IEEE ICDE等国际知名期刊会议上发表学术论文近20篇。曾担任ACM S3 workshop 2019会议TPC member。获得MSU Engineering Distinguished Fellowship Award。