A Data-plane Approach for Detecting Malware in IoT Networks

被引:1
|
作者
Gaikar, Mrunal Hareshwar [1 ]
Haribabu, K. [1 ]
机构
[1] Birla Inst Technol & Sci, CSIS Dept, Pilani 333031, Rajasthan, India
关键词
p4; data plane programming; machine learning; malware; malicious;
D O I
10.1109/ICOIN56518.2023.10048918
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Data plane where all the packet processing and forwarding is done based on control plane logic can be used to monitor the network traffic along with forwarding of the packets. Security threats have become common in IoT networks. Due to the pandemic, as things have moved to virtual platforms, security at every level, including network devices, has become a major concern. Attackers try to gather as much data as possible through various means. In networking, dependence on the control plane to take forwarding decisions is inefficient when quick response is required, in cases of attack mitigation, anomaly detection, intrusion detection etc. Some of the forwarding logic in control plane can be transformed into rules at the data plane. In this work, this is achieved through programmable switches and domain specific language such as P4. A machine learning algorithm is used to train a classifier on publicly available malware dataset. These rules are used for classifying data packets. This work derives rules from a public malware traffic dataset and uses Mininet (network emulator) to emulate an IoT network, and 88% accuracy is achieved in detecting malware at the data plane.
引用
收藏
页码:578 / 583
页数:6
相关论文
共 50 条
  • [1] Orchestrating the Data-plane of Virtual LTE Core Networks
    Mahindra, Rajesh
    Banerjee, Arijit
    Sundaresan, Karthik
    Kasera, Sneha
    Van der Merwe, Jacobus
    Rangarajan, Sampath
    2017 14TH ANNUAL IEEE INTERNATIONAL CONFERENCE ON SENSING, COMMUNICATION, AND NETWORKING (SECON), 2017, : 172 - 180
  • [2] Scaling Data-Plane Logging in Large Scale Networks
    Arefin, Ahsan
    Khurshid, Ahmed
    Caesar, Matthew
    Nahrstedt, Klara
    2011 - MILCOM 2011 MILITARY COMMUNICATIONS CONFERENCE, 2011, : 1308 - 1314
  • [3] Breaking Cellular IoT with Forged Data-plane Signaling: Attacks and Countermeasure
    Tan, Zhaowei
    Ding, Boyan
    Zhao, Jinghao
    Guo, Yunqi
    Lu, Songwu
    ACM TRANSACTIONS ON SENSOR NETWORKS, 2022, 18 (04)
  • [4] A Data Plane Approach for Detecting Control Plane Anomalies in Mobile Networks
    Abdelrahman, Omer H.
    Gelenbe, Erol
    INTERNET OF THINGS: IOT INFRASTRUCTURES, PT I, 2016, 169 : 210 - 221
  • [5] A Network Function Virtualization System for Detecting Malware in Large IoT Based Networks
    Guizani, Nadra
    Ghafoor, Arif
    IEEE JOURNAL ON SELECTED AREAS IN COMMUNICATIONS, 2020, 38 (06) : 1218 - 1228
  • [6] Deep Neural Networks for Enhanced Security: Detecting Metamorphic Malware in IoT Devices
    Habib, Faiza
    Shirazi, Syed Hamad
    Aurangzeb, Khursheed
    Khan, Asfandyar
    Bhushan, Bharat
    Alhussein, Musaed
    IEEE ACCESS, 2024, 12 : 48570 - 48582
  • [7] INVEST: Flow-based Traffic Volume Estimation in Data-plane Programmable Networks
    Ding, Damu
    Savi, Marco
    Pederzolli, Federico
    Siracusa, Domenico
    2021 IFIP NETWORKING CONFERENCE AND WORKSHOPS (IFIP NETWORKING), 2021,
  • [8] Data-Plane Security Applications in Adversarial Settings
    Wang, Liang
    Mittal, Prateek
    Rexford, Jennifer
    ACM SIGCOMM COMPUTER COMMUNICATION REVIEW, 2022, 52 (02) : 2 - 2
  • [9] Detecting Anomaly Data for IoT Sensor Networks
    Wei, Zhe
    Wang, Fang
    SCIENTIFIC PROGRAMMING, 2022, 2022
  • [10] A Geometric Windowing Algorithm in Network Data-plane Verification
    Chen, Richard
    Mano, Toru
    Inoue, Takeru
    Mizutani, Kimihiro
    Nagata, Hisashi
    Akashi, Osamu
    PROCEEDINGS 2016 IEEE 36TH INTERNATIONAL CONFERENCE ON DISTRIBUTED COMPUTING SYSTEMS ICDCS 2016, 2016, : 743 - 744