作者
Sanghak Lee, Jiwon Choi, Jihun Kim, Beumjin Cho, Sangho Lee, Hanjun Kim, Jong Kim
发表日期
2017/6/7
研讨会论文
Proceedings of the 22nd ACM on Symposium on Access Control Models and Technologies
页码范围
43-54
出版商
ACM
简介
Improvement in the security and availability is important for the success of the Internet of Things (IoT). Given that recent IoT devices are likely to have multiple functionalities and support third-party applications, this goal becomes challenging to achieve. Through an in-depth investigation of existing IoT frameworks, we focused on two inherent security flaws in their design caused by their device-centric approaches: (1) coarse-grained access control and (2) lack of resource isolation. Because of the coarse-grained access control, IoT devices suffer from over-privileged applications. Furthermore, the lack of resource isolation allows the possibility of Denial-of-Service attacks.
In this paper, we propose a functionality-centric approach to manage IoT devices, called FACT, which has two design goals, namely, the principle of least privilege and the availability in terms of device functionalities. FACT isolates each functionality …
引用总数
20182019202020212022202320245139131154
学术搜索中的文章
S Lee, J Choi, J Kim, B Cho, S Lee, H Kim, J Kim - Proceedings of the 22nd acm on symposium on access …, 2017