Skip to Main Content (Press Enter)

Logo CNR
  • ×
  • Home
  • Persone
  • Pubblicazioni
  • Strutture
  • Competenze

UNI-FIND
Logo CNR

|

UNI-FIND

cnr.it
  • ×
  • Home
  • Persone
  • Pubblicazioni
  • Strutture
  • Competenze
  1. Pubblicazioni

SlowITe, a Novel Denial of Service Attack Affecting MQTT

Articolo
Data di Pubblicazione:
2020
Abstract:
Security of the Internet of Things is a crucial topic, due to the criticality of the networks and the sensitivity of exchanged data. In this paper, we target the Message Queue Telemetry Transport (MQTT) protocol used in IoT environments for communication between IoT devices. We exploit a specific weakness of MQTT which was identified during our research, allowing the client to configure the behavior of the server. In order to validate the possibility to exploit such vulnerability, we propose SlowITe, a novel low-rate denial of service attack aimed to target MQTT through low-rate techniques. We validate SlowITe against real MQTT services, considering both plain text and encrypted communications and comparing the effects of the threat when targeting different daemons. Results show that the attack is successful and it is able to exploit the identified vulnerability to lead a DoS on the victim with limited attack resources.
Tipologia CRIS:
01.01 Articolo in rivista
Keywords:
internet of things; protocols security; cyber-security; network security; slow dos attack; mqtt
Elenco autori:
Vaccari, Ivan; Aiello, Maurizio; Cambiaso, Enrico
Autori di Ateneo:
AIELLO MAURIZIO
CAMBIASO ENRICO
Link alla scheda completa:
https://iris.cnr.it/handle/20.500.14243/379786
Pubblicato in:
SENSORS (BASEL)
Journal
  • Dati Generali

Dati Generali

URL

https://www.mdpi.com/1424-8220/20/10/2932
  • Utilizzo dei cookie

Realizzato con VIVO | Designed by Cineca | 26.5.0.0 | Sorgente dati: PREPROD (Ribaltamento disabilitato)