MQTT security: A novel fuzzing approach

dc.contributor.authorHernández Ramos, Santiago
dc.contributor.authorVillalba de Benito, María Teresa
dc.contributor.authorLacuesta, Raquel
dc.date.accessioned2019-05-18T13:25:00Z
dc.date.available2019-05-18T13:25:00Z
dc.date.issued2018
dc.description.abstractThe Internet of Things is a concept that is increasingly present in our lives. The emergence of intelligent devices has led to a paradigm shift in the way technology interacts with the environment, leading society to a smarter planet. Consequently, new advanced telemetry approaches appear to connect all kinds of devices with each other, with companies, or with other networks, such as the Internet. On the road to an increasingly interconnected world, where critical devices rely on communication networks to provide an essential service, there arises the need to ensure the security and reliability of these protocols and applications. In this paper, we discuss a security-based approach for MQTT (Message Queue Telemetry Transport), which stands out as a very lightweight and widely used messaging and information exchange protocol for IoT (Internet of Things) devices throughout the world. To that end, we propose the creation of a framework that allows for performing a novel, template-based fuzzing technique on the MQTT protocol. The first experimental results showed that performance of the fuzzing technique presented here makes it a good candidate for use in network architectures with low processing power sensors, such as Smart Cities. In addition, the use of this fuzzer in widely used applications that implement MQTT has led to the discovery of several new security flaws not hitherto reported, demonstrating its usefulness as a tool for finding security vulnerabilities.spa
dc.description.filiationUEMspa
dc.description.impact1.396 JCR (2018) Q3, 113/155 Computer Science, Information Systems, 186/266 Engineering, Electrical & Electronic; Q4, 67/88 Telecommunicationsspa
dc.description.impact0.246 SJR (2018) Q3, 406/2234 Computer Networks and Communicationsspa
dc.description.impactNo data IDR 2018spa
dc.description.sponsorshipSin financiaciónspa
dc.identifier.citationHernández Ramos, S., Villalba, M. T., & Lacuesta, R. (2018). MQTT Security: A Novel Fuzzing Approach. Wireless Communications and Mobile Computing, 2018(8261746). https://doi.org/10.1155/2018/8261746spa
dc.identifier.doi10.1155/2018/8261746
dc.identifier.issn1530-8669
dc.identifier.issn1530-8677
dc.identifier.urihttp://hdl.handle.net/11268/7929
dc.language.isoengspa
dc.peerreviewedSispa
dc.rightsAttribution-NonCommercial-NoDerivatives 4.0 Internacional*
dc.rights.accessRightsopen accessspa
dc.rights.urihttp://creativecommons.org/licenses/by-nc-nd/4.0/*
dc.subject.uemInternet de los objetosspa
dc.subject.uemAplicaciones informáticasspa
dc.subject.unescoInternetspa
dc.subject.unescoAplicación informáticaspa
dc.titleMQTT security: A novel fuzzing approachspa
dc.typejournal articlespa
dspace.entity.typePublication
relation.isAuthorOfPublicationbce3d28b-1b69-4d8b-ae0c-f4253645e2fc
relation.isAuthorOfPublication.latestForDiscoverybce3d28b-1b69-4d8b-ae0c-f4253645e2fc

Files

Original bundle

Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
8261746.pdf
Size:
1.53 MB
Format:
Adobe Portable Document Format
Description:
Versión del editor