{"title":"基于rpl的物联网重放攻击:比较与实证研究","authors":"Hussah Albinali , Farag Azzedin","doi":"10.1016/j.comnet.2024.110996","DOIUrl":null,"url":null,"abstract":"<div><div>Routing Protocol for Low-Power and Lossy Networks (RPL) is widely used to enable IP-based communication in constrained environments. However, RPL is vulnerable to several security threats, including replay attacks, which can compromise network performance. Malicious nodes can easily replay RPL control messages and hence disrupt network topology and operation. Although this issue is significant, current studies are constrained and mainly focus on replay attacks aimed at DIO messages. There is little discussion about other kinds of replay attacks, especially those involving DAO messages. To fill this gap, we offer an empirical analysis of different types of replay attacks, with a particular emphasis on DAO replay attacks, including the often-neglected route table falsification attack, which has not received much attention in the existing literature. Our research methodically examines the effects of various replay attacks on RPL network topology by conducting comprehensive experiments to assess their influence on packet delivery and network latency. Furthermore, we investigate how these attacks affect information security by applying the CIA triad, which encompasses confidentiality, integrity, and availability. We also emphasize security measures aimed at enhancing resilience against these attacks. Our research indicates that the majority of these attacks significantly affect availability and have a serious impact on integrity. DIO suppression and copycat attacks lead to a 36% reduction in the average delivery ratio and neighbor attacks cause a 50% increase in communication latency in specific attack scenarios. These findings highlight the impact of these attacks and underscore the necessity of developing countermeasures to address them.</div></div>","PeriodicalId":50637,"journal":{"name":"Computer Networks","volume":"257 ","pages":"Article 110996"},"PeriodicalIF":4.6000,"publicationDate":"2025-02-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":"{\"title\":\"Replay attacks in RPL-based Internet of Things: Comparative and empirical study\",\"authors\":\"Hussah Albinali , Farag Azzedin\",\"doi\":\"10.1016/j.comnet.2024.110996\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"<div><div>Routing Protocol for Low-Power and Lossy Networks (RPL) is widely used to enable IP-based communication in constrained environments. However, RPL is vulnerable to several security threats, including replay attacks, which can compromise network performance. Malicious nodes can easily replay RPL control messages and hence disrupt network topology and operation. Although this issue is significant, current studies are constrained and mainly focus on replay attacks aimed at DIO messages. There is little discussion about other kinds of replay attacks, especially those involving DAO messages. To fill this gap, we offer an empirical analysis of different types of replay attacks, with a particular emphasis on DAO replay attacks, including the often-neglected route table falsification attack, which has not received much attention in the existing literature. Our research methodically examines the effects of various replay attacks on RPL network topology by conducting comprehensive experiments to assess their influence on packet delivery and network latency. Furthermore, we investigate how these attacks affect information security by applying the CIA triad, which encompasses confidentiality, integrity, and availability. We also emphasize security measures aimed at enhancing resilience against these attacks. Our research indicates that the majority of these attacks significantly affect availability and have a serious impact on integrity. DIO suppression and copycat attacks lead to a 36% reduction in the average delivery ratio and neighbor attacks cause a 50% increase in communication latency in specific attack scenarios. These findings highlight the impact of these attacks and underscore the necessity of developing countermeasures to address them.</div></div>\",\"PeriodicalId\":50637,\"journal\":{\"name\":\"Computer Networks\",\"volume\":\"257 \",\"pages\":\"Article 110996\"},\"PeriodicalIF\":4.6000,\"publicationDate\":\"2025-02-01\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"0\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"Computer Networks\",\"FirstCategoryId\":\"94\",\"ListUrlMain\":\"https://www.sciencedirect.com/science/article/pii/S1389128624008284\",\"RegionNum\":2,\"RegionCategory\":\"计算机科学\",\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"2024/12/19 0:00:00\",\"PubModel\":\"Epub\",\"JCR\":\"Q1\",\"JCRName\":\"COMPUTER SCIENCE, HARDWARE & ARCHITECTURE\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"Computer Networks","FirstCategoryId":"94","ListUrlMain":"https://www.sciencedirect.com/science/article/pii/S1389128624008284","RegionNum":2,"RegionCategory":"计算机科学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"2024/12/19 0:00:00","PubModel":"Epub","JCR":"Q1","JCRName":"COMPUTER SCIENCE, HARDWARE & ARCHITECTURE","Score":null,"Total":0}
Replay attacks in RPL-based Internet of Things: Comparative and empirical study
Routing Protocol for Low-Power and Lossy Networks (RPL) is widely used to enable IP-based communication in constrained environments. However, RPL is vulnerable to several security threats, including replay attacks, which can compromise network performance. Malicious nodes can easily replay RPL control messages and hence disrupt network topology and operation. Although this issue is significant, current studies are constrained and mainly focus on replay attacks aimed at DIO messages. There is little discussion about other kinds of replay attacks, especially those involving DAO messages. To fill this gap, we offer an empirical analysis of different types of replay attacks, with a particular emphasis on DAO replay attacks, including the often-neglected route table falsification attack, which has not received much attention in the existing literature. Our research methodically examines the effects of various replay attacks on RPL network topology by conducting comprehensive experiments to assess their influence on packet delivery and network latency. Furthermore, we investigate how these attacks affect information security by applying the CIA triad, which encompasses confidentiality, integrity, and availability. We also emphasize security measures aimed at enhancing resilience against these attacks. Our research indicates that the majority of these attacks significantly affect availability and have a serious impact on integrity. DIO suppression and copycat attacks lead to a 36% reduction in the average delivery ratio and neighbor attacks cause a 50% increase in communication latency in specific attack scenarios. These findings highlight the impact of these attacks and underscore the necessity of developing countermeasures to address them.
期刊介绍:
Computer Networks is an international, archival journal providing a publication vehicle for complete coverage of all topics of interest to those involved in the computer communications networking area. The audience includes researchers, managers and operators of networks as well as designers and implementors. The Editorial Board will consider any material for publication that is of interest to those groups.