Testing And Hardening IoT Devices Against the Mirai Botnet

07/27/2020
by   Christopher Kelly, et al.
0

A large majority of cheap Internet of Things (IoT) devices that arrive brand new, and are configured with out-of-the-box settings, are not being properly secured by the manufactures, and are vulnerable to existing malware lurking on the Internet. Among them is the Mirai botnet which has had its source code leaked to the world, allowing any malicious actor to configure and unleash it. A combination of software assets not being utilised safely and effectively are exposing consumers to a full compromise. We configured and attacked 4 different IoT devices using the Mirai libraries. Our experiments concluded that three out of the four devices were vulnerable to the Mirai malware and became infected when deployed using their default configuration. This demonstrates that the original security configurations are not sufficient to provide acceptable levels of protection for consumers, leaving their devices exposed and vulnerable. By analysing the Mirai libraries and its attack vectors, we were able to determine appropriate device configuration countermeasures to harden the devices against this botnet, which were successfully validated through experimentation.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
02/06/2018

A Survey on Sensor-based Threats to Internet-of-Things (IoT) Devices and Applications

The concept of Internet of Things (IoT) has become more popular in the m...
research
04/20/2018

DÏoT: A Crowdsourced Self-learning Approach for Detecting Compromised IoT Devices

IoT devices are being widely deployed. Many of them are vulnerable due t...
research
04/20/2018

DIoT: A Self-learning System for Detecting Compromised IoT Devices

IoT devices are being widely deployed. Many of them are vulnerable due t...
research
09/21/2020

Time-to-Provision Evaluation of IoT Devices Using Automated Zero-Touch Provisioning

The Internet of Things (IoT) is being widely adopted in today's society,...
research
11/27/2022

Devils in the Clouds: An Evolutionary Study of Telnet Bot Loaders

One of the innovations brought by Mirai and its derived malware is the a...
research
01/27/2022

A TOCTOU Attack on DICE Attestation

A major security challenge for modern Internet of Things (IoT) deploymen...
research
02/08/2022

IoT Malware Detection Architecture using a Novel Channel Boosted and Squeezed CNN

Interaction between devices, people, and the Internet has given birth to...

Please sign up or login with your details

Forgot password? Click here to reset