Program Analysis of Commodity IoT Applications for Security and Privacy: Challenges and Opportunities

被引:71
|
作者
Celik, Z. Berkay [1 ,3 ]
Fernandes, Earlence [2 ,4 ]
Pauley, Eric [1 ,5 ]
Tan, Gang [1 ,5 ]
Mcdaniel, Patrick [1 ,5 ]
机构
[1] Penn State Univ, University Pk, PA 16802 USA
[2] Univ Washington, Seattle, WA 98195 USA
[3] Purdue Univ, Dept Comp Sci, W Lafayette, IN 47907 USA
[4] Univ Wisconsin Madison, Dept Comp Sci, Madison, WI 53706 USA
[5] Penn State Univ Penn State, Dept Comp Sci & Engn, State Coll, PA 16802 USA
基金
美国国家科学基金会;
关键词
IoT security and privacy; IoT programming platforms; program analysis; INTERNET; THINGS;
D O I
10.1145/3333501
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Recent advances in Internet of Things (IoT) have enabled myriad domains such as smart homes, personal monitoring devices, and enhanced manufacturing. IoT is now pervasive-new applications are being used in nearly every conceivable environment, which leads to the adoption of device-based interaction and automation. However, IoT has also raised issues about the security and privacy of these digitally augmented spaces. Program analysis is crucial in identifying those issues, yet the application and scope of program analysis in IoT remains largely unexplored by the technical community. In this article, we study privacy and security issues in IoT that require program-analysis techniques with an emphasis on identified attacks against these systems and defenses implemented so far. Based on a study of five IoT programming platforms, we identify the key insights that result from research efforts in both the program analysis and security communities and relate the efficacy of program-analysis techniques to security and privacy issues. We conclude by studying recent IoT analysis systems and exploring their implementations. Through these explorations, we highlight key challenges and opportunities in calibrating for the environments in which IoT systems will be used.
引用
收藏
页数:30
相关论文
共 50 条
  • [31] A Survey of IoT Privacy Security: Architecture, Technology, Challenges, and Trends
    Sun, Panjun
    Shen, Shigen
    Wan, Yi
    Wu, Zongda
    Fang, Zhaoxi
    Gao, Xiao-Zhi
    IEEE INTERNET OF THINGS JOURNAL, 2024, 11 (21): : 34567 - 34591
  • [32] A Survey on Security, Privacy, Trust, and Architectural Challenges in IoT Systems
    Adam, Mumin
    Hammoudeh, Mohammad
    Alrawashdeh, Rana
    Alsulaimy, Basil
    IEEE ACCESS, 2024, 12 : 57128 - 57149
  • [33] A Testbed for Security and Privacy Analysis of IoT Devices
    Tekeoglu, Ali
    Tosun, Ali Saman
    PROCEEDINGS 2016 IEEE 13TH INTERNATIONAL CONFERENCE ON MOBILE AD HOC AND SENSOR SYSTEMS (MASS 2016), 2016, : 343 - 348
  • [34] Security and privacy of industrial big data: Motivation, opportunities, and challenges
    Anjum, Naveed
    Latif, Zohaib
    Chen, Hongsong
    JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2025, 237
  • [35] Smart Grid Security, Privacy, and Resilient Architectures: Opportunities and Challenges
    Amin, S. Massoud
    2012 IEEE POWER AND ENERGY SOCIETY GENERAL MEETING, 2012,
  • [36] Pervasive Security and Privacy-A Brief Reflection on Challenges and Opportunities
    Alt, Florian
    IEEE PERVASIVE COMPUTING, 2021, 20 (04) : 82 - 86
  • [37] Multimedia Applications and Security in MapReduce: Opportunities and Challenges
    Yu, Zhiwei
    Wang, Chaokun
    Thomborson, Clark
    Wang, Jianmin
    Lian, Shiguo
    Vasilakos, Athanasios V.
    CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2012, 24 (17): : 2083 - 2101
  • [38] A Vision of IoT: Applications, Challenges, and Opportunities With China Perspective
    Chen, Shanzhi
    Xu, Hui
    Liu, Dake
    Hu, Bo
    Wang, Hucheng
    IEEE INTERNET OF THINGS JOURNAL, 2014, 1 (04): : 349 - 359
  • [39] Security and Privacy Challenges and Potential Solutions for DLT based IoT Systems
    Paavolainen, Santeri
    Nikander, Pekka
    2018 GLOBAL INTERNET OF THINGS SUMMIT (GIOTS), 2018, : 25 - 30
  • [40] Blockchain technology: A survey on applications and security privacy Challenges
    Mohanta, Bhabendu Kumar
    Jena, Debasish
    Panda, Soumyashree S.
    Sobhanayak, Srichandan
    INTERNET OF THINGS, 2019, 8