ID | 68933 |
Author |
Miki, Masato
Graduate School of Natural Science and Technology, Okayama University
Yamauchi, Toshihiro
Faculty of Environmental, Life, Natural Science and Technology, Okayama University
ORCID
Kaken ID
publons
researchmap
Kobayashi, Satoru
Faculty of Environmental, Life, Natural Science and Technology, Okayama University
|
Abstract | Numerous active attacks targeting Internet of Things (IoT) devices exist. They exploit the latest vulnerabilities discovered in IoT devices. Therefore, Mandatory Access Control (MAC) systems based on Linux Security Modules (LSM), such as SELinux and AppArmor, are effective security features for IoT devices because they can mitigate the impact of attacks even if software vulnerabilities are discovered. However, they are not adopted by most IoT devices. The existing approaches are insufficient for investigating the causes of this problem.In this study, we comprehensively investigated what factors can affect the applicability of MAC systems based on LSM in IoT devices. We focused on how frequently cases can occur where they cannot be adopted, owing to each factor. To increase the comprehensiveness of the factors affecting the adoption of MAC systems in IoT devices, we investigated the kernel version, CPU architecture, and support for BusyBox in addition to the investigation of resources, which conducted in previous studies. We also conducted simulated experiments based on the attack method of Mirai to investigate whether MAC systems can protect against IoT malware. Finally, we discuss the impact of a combination of these factors on MAC system adoption.
|
Keywords | Mandatory Access Control System
IoT Security
Linux Security Modules
|
Note | © 2023 IEEE. Personal use of this material is permitted. Permission from IEEE must be obtained for all other uses, in any current or future media, including reprinting/republishing this material for advertising or promotional purposes, creating new collective works, for resale or redistribution to servers or lists, or reuse of any copyrighted component of this work in other works.
This fulltext file will be available in Jan. 2026.
|
Published Date | 2023-11-28
|
Publication Title |
2023 Eleventh International Symposium on Computing and Networking (CANDAR)
|
Publisher | IEEE
|
Start Page | 161
|
End Page | 167
|
ISSN | 2379-1896
|
Content Type |
Conference Paper
|
language |
English
|
OAI-PMH Set |
岡山大学
|
Copyright Holders | © 2023 IEEE.
|
File Version | author
|
DOI | |
Related Url | isVersionOf https://doi.org/10.1109/candar60563.2023.00029
|
Citation | M. Miki, T. Yamauchi and S. Kobayashi, "Evaluation of Effectiveness of MAC Systems Based on LSM for Protecting IoT Devices," 2023 Eleventh International Symposium on Computing and Networking (CANDAR), Matsue, Japan, 2023, pp. 161-167, doi: 10.1109/CANDAR60563.2023.00029.
|
助成情報 |
JPMJPR1938:
IoT機器の実行環境の隔離を実現するIoT基盤ソフトウェアの構築
( 国立研究開発法人科学技術振興機構 / Japan Science and Technology Agency )
22H03592:
機器毎のソフトウェア構成変更による攻撃難化と攻撃耐性を持つ基盤ソフトウェアの研究
( 独立行政法人日本学術振興会 / Japan Society for the Promotion of Science )
|