Giovanni Stanco, Annalisa Navarro, Flavio Frattini, Giorgio Ventre, Alessio Botta
{"title":"A comprehensive survey on the security of low power wide area networks for the Internet of Things","authors":"Giovanni Stanco, Annalisa Navarro, Flavio Frattini, Giorgio Ventre, Alessio Botta","doi":"10.1016/j.icte.2024.03.003","DOIUrl":null,"url":null,"abstract":"<div><p>While the spreading of the Internet of Things continues beyond expectations, the security of networking technologies used in this context remains an open issue. This paper provides a comprehensive overview of the state of the art on the security of Low Power Wide Area Networks (LPWANs), with a focus on Sigfox, LoRaWAN, and Narrowband Internet of Things. The paper covers five main areas: (1) security requirements and their implementation in these networks, such as authentication, encryption, access control, and key management; (2) categorization of attacks and threat modeling, with the identification of the attack vectors and the presentation of an attack categorization and analysis; (3) a detailed explanation of attacks documented on Sigfox, LoRaWAN, and Narrowband Internet of Things, examining the underlying vulnerabilities exploited, outlining potential consequences, and discussing countermeasures proposed to mitigate these attacks; (4) security enhancements proposed to address vulnerabilities in each network; (5) the integration of LPWANs with 5G and the consequent security challenges. This survey constitutes an important and missing resource for the study and the development of secure Internet of Things solutions based on Low Power Wide Area Networks, raising awareness of potential threats, and guiding future research efforts towards strengthening the security of these networks and of the broader IoT landscape.</p></div>","PeriodicalId":48526,"journal":{"name":"ICT Express","volume":"10 3","pages":"Pages 519-552"},"PeriodicalIF":4.1000,"publicationDate":"2024-06-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"https://www.sciencedirect.com/science/article/pii/S2405959524000274/pdfft?md5=794cf07bac0df7843e84d64bed01dc07&pid=1-s2.0-S2405959524000274-main.pdf","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"ICT Express","FirstCategoryId":"94","ListUrlMain":"https://www.sciencedirect.com/science/article/pii/S2405959524000274","RegionNum":3,"RegionCategory":"计算机科学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"Q1","JCRName":"COMPUTER SCIENCE, INFORMATION SYSTEMS","Score":null,"Total":0}
引用次数: 0
Abstract
While the spreading of the Internet of Things continues beyond expectations, the security of networking technologies used in this context remains an open issue. This paper provides a comprehensive overview of the state of the art on the security of Low Power Wide Area Networks (LPWANs), with a focus on Sigfox, LoRaWAN, and Narrowband Internet of Things. The paper covers five main areas: (1) security requirements and their implementation in these networks, such as authentication, encryption, access control, and key management; (2) categorization of attacks and threat modeling, with the identification of the attack vectors and the presentation of an attack categorization and analysis; (3) a detailed explanation of attacks documented on Sigfox, LoRaWAN, and Narrowband Internet of Things, examining the underlying vulnerabilities exploited, outlining potential consequences, and discussing countermeasures proposed to mitigate these attacks; (4) security enhancements proposed to address vulnerabilities in each network; (5) the integration of LPWANs with 5G and the consequent security challenges. This survey constitutes an important and missing resource for the study and the development of secure Internet of Things solutions based on Low Power Wide Area Networks, raising awareness of potential threats, and guiding future research efforts towards strengthening the security of these networks and of the broader IoT landscape.
期刊介绍:
The ICT Express journal published by the Korean Institute of Communications and Information Sciences (KICS) is an international, peer-reviewed research publication covering all aspects of information and communication technology. The journal aims to publish research that helps advance the theoretical and practical understanding of ICT convergence, platform technologies, communication networks, and device technologies. The technology advancement in information and communication technology (ICT) sector enables portable devices to be always connected while supporting high data rate, resulting in the recent popularity of smartphones that have a considerable impact in economic and social development.