基于rpl的物联网重放攻击:比较与实证研究

IF 4.6 2区 计算机科学 Q1 COMPUTER SCIENCE, HARDWARE & ARCHITECTURE Computer Networks Pub Date : 2025-02-01 Epub Date: 2024-12-19 DOI:10.1016/j.comnet.2024.110996
Hussah Albinali , Farag Azzedin
{"title":"基于rpl的物联网重放攻击:比较与实证研究","authors":"Hussah Albinali ,&nbsp;Farag Azzedin","doi":"10.1016/j.comnet.2024.110996","DOIUrl":null,"url":null,"abstract":"<div><div>Routing Protocol for Low-Power and Lossy Networks (RPL) is widely used to enable IP-based communication in constrained environments. However, RPL is vulnerable to several security threats, including replay attacks, which can compromise network performance. Malicious nodes can easily replay RPL control messages and hence disrupt network topology and operation. Although this issue is significant, current studies are constrained and mainly focus on replay attacks aimed at DIO messages. There is little discussion about other kinds of replay attacks, especially those involving DAO messages. To fill this gap, we offer an empirical analysis of different types of replay attacks, with a particular emphasis on DAO replay attacks, including the often-neglected route table falsification attack, which has not received much attention in the existing literature. Our research methodically examines the effects of various replay attacks on RPL network topology by conducting comprehensive experiments to assess their influence on packet delivery and network latency. Furthermore, we investigate how these attacks affect information security by applying the CIA triad, which encompasses confidentiality, integrity, and availability. We also emphasize security measures aimed at enhancing resilience against these attacks. Our research indicates that the majority of these attacks significantly affect availability and have a serious impact on integrity. DIO suppression and copycat attacks lead to a 36% reduction in the average delivery ratio and neighbor attacks cause a 50% increase in communication latency in specific attack scenarios. These findings highlight the impact of these attacks and underscore the necessity of developing countermeasures to address them.</div></div>","PeriodicalId":50637,"journal":{"name":"Computer Networks","volume":"257 ","pages":"Article 110996"},"PeriodicalIF":4.6000,"publicationDate":"2025-02-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":"{\"title\":\"Replay attacks in RPL-based Internet of Things: Comparative and empirical study\",\"authors\":\"Hussah Albinali ,&nbsp;Farag Azzedin\",\"doi\":\"10.1016/j.comnet.2024.110996\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"<div><div>Routing Protocol for Low-Power and Lossy Networks (RPL) is widely used to enable IP-based communication in constrained environments. However, RPL is vulnerable to several security threats, including replay attacks, which can compromise network performance. Malicious nodes can easily replay RPL control messages and hence disrupt network topology and operation. Although this issue is significant, current studies are constrained and mainly focus on replay attacks aimed at DIO messages. There is little discussion about other kinds of replay attacks, especially those involving DAO messages. To fill this gap, we offer an empirical analysis of different types of replay attacks, with a particular emphasis on DAO replay attacks, including the often-neglected route table falsification attack, which has not received much attention in the existing literature. Our research methodically examines the effects of various replay attacks on RPL network topology by conducting comprehensive experiments to assess their influence on packet delivery and network latency. Furthermore, we investigate how these attacks affect information security by applying the CIA triad, which encompasses confidentiality, integrity, and availability. We also emphasize security measures aimed at enhancing resilience against these attacks. Our research indicates that the majority of these attacks significantly affect availability and have a serious impact on integrity. DIO suppression and copycat attacks lead to a 36% reduction in the average delivery ratio and neighbor attacks cause a 50% increase in communication latency in specific attack scenarios. These findings highlight the impact of these attacks and underscore the necessity of developing countermeasures to address them.</div></div>\",\"PeriodicalId\":50637,\"journal\":{\"name\":\"Computer Networks\",\"volume\":\"257 \",\"pages\":\"Article 110996\"},\"PeriodicalIF\":4.6000,\"publicationDate\":\"2025-02-01\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"0\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"Computer Networks\",\"FirstCategoryId\":\"94\",\"ListUrlMain\":\"https://www.sciencedirect.com/science/article/pii/S1389128624008284\",\"RegionNum\":2,\"RegionCategory\":\"计算机科学\",\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"2024/12/19 0:00:00\",\"PubModel\":\"Epub\",\"JCR\":\"Q1\",\"JCRName\":\"COMPUTER SCIENCE, HARDWARE & ARCHITECTURE\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"Computer Networks","FirstCategoryId":"94","ListUrlMain":"https://www.sciencedirect.com/science/article/pii/S1389128624008284","RegionNum":2,"RegionCategory":"计算机科学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"2024/12/19 0:00:00","PubModel":"Epub","JCR":"Q1","JCRName":"COMPUTER SCIENCE, HARDWARE & ARCHITECTURE","Score":null,"Total":0}
引用次数: 0

摘要

低功耗损耗网络路由协议(RPL)广泛用于在受限环境中实现基于ip的通信。然而,RPL容易受到几种安全威胁,包括重放攻击,这可能会损害网络性能。恶意节点可以很容易地重放RPL控制消息,从而破坏网络的拓扑结构和运行。虽然这个问题很重要,但目前的研究受到限制,主要集中在针对DIO消息的重放攻击上。很少讨论其他类型的重放攻击,特别是那些涉及DAO消息的攻击。为了填补这一空白,我们对不同类型的重放攻击进行了实证分析,特别强调了DAO重放攻击,包括经常被忽视的路由表伪造攻击,这在现有文献中没有得到太多关注。我们的研究系统地检查了各种重放攻击对RPL网络拓扑的影响,通过进行全面的实验来评估它们对数据包传递和网络延迟的影响。此外,我们还研究了这些攻击是如何通过应用CIA三合一来影响信息安全的,其中包括机密性、完整性和可用性。我们还强调旨在增强抵御此类攻击能力的安全措施。我们的研究表明,这些攻击中的大多数会严重影响可用性,并对完整性产生严重影响。在特定攻击场景下,DIO抑制和复制攻击导致平均投递率降低36%,邻居攻击导致通信延迟增加50%。这些调查结果突出了这些攻击的影响,并强调了制定应对措施的必要性。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
查看原文
分享 分享
微信好友 朋友圈 QQ好友 复制链接
本刊更多论文
Replay attacks in RPL-based Internet of Things: Comparative and empirical study
Routing Protocol for Low-Power and Lossy Networks (RPL) is widely used to enable IP-based communication in constrained environments. However, RPL is vulnerable to several security threats, including replay attacks, which can compromise network performance. Malicious nodes can easily replay RPL control messages and hence disrupt network topology and operation. Although this issue is significant, current studies are constrained and mainly focus on replay attacks aimed at DIO messages. There is little discussion about other kinds of replay attacks, especially those involving DAO messages. To fill this gap, we offer an empirical analysis of different types of replay attacks, with a particular emphasis on DAO replay attacks, including the often-neglected route table falsification attack, which has not received much attention in the existing literature. Our research methodically examines the effects of various replay attacks on RPL network topology by conducting comprehensive experiments to assess their influence on packet delivery and network latency. Furthermore, we investigate how these attacks affect information security by applying the CIA triad, which encompasses confidentiality, integrity, and availability. We also emphasize security measures aimed at enhancing resilience against these attacks. Our research indicates that the majority of these attacks significantly affect availability and have a serious impact on integrity. DIO suppression and copycat attacks lead to a 36% reduction in the average delivery ratio and neighbor attacks cause a 50% increase in communication latency in specific attack scenarios. These findings highlight the impact of these attacks and underscore the necessity of developing countermeasures to address them.
求助全文
通过发布文献求助,成功后即可免费获取论文全文。 去求助
来源期刊
Computer Networks
Computer Networks 工程技术-电信学
CiteScore
10.80
自引率
3.60%
发文量
434
审稿时长
8.6 months
期刊介绍: Computer Networks is an international, archival journal providing a publication vehicle for complete coverage of all topics of interest to those involved in the computer communications networking area. The audience includes researchers, managers and operators of networks as well as designers and implementors. The Editorial Board will consider any material for publication that is of interest to those groups.
期刊最新文献
Privacy-preserving and secure spectrum sharing for database-driven cognitive radio networks vObliChain: Securing satellite networks with verifiable oblivious search over blockchain databases TraCP: Traffic concentration prior-guided gMLP for APT Detection in extremely imbalanced IIoT traffic Efficient and interpretable IoT botnet detection via feature selection and hyperparameter-optimized XGB SCL-RFM: supervised contrastive learning-based intrusion detection with correlation-driven feature arrangement and regional feature masking
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
现在去查看 取消
×
提示
确定
0
微信
客服QQ
Book学术公众号 扫码关注我们
反馈
×
意见反馈
请填写您的意见或建议
请填写您的手机或邮箱
已复制链接
已复制链接
快去分享给好友吧!
我知道了
×
扫码分享
扫码分享
Book学术官方微信
Book学术官方微信
Book学术文献互助
Book学术文献互助群
群 号:604180095
Book学术
文献互助 智能选刊 最新文献 互助须知 联系我们:info@booksci.cn
Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。
Copyright © 2023 Book学术 All rights reserved.
ghs 京公网安备 11010802042870号 京ICP备2023020795号-1