Home > Research > Publications & Outputs > MUD-Based Behavioral Profiling Security Framewo...

Links

Text available via DOI:

View graph of relations

MUD-Based Behavioral Profiling Security Framework for Software-Defined IoT Networks

Research output: Contribution to Journal/MagazineJournal articlepeer-review

Published
  • Prabhakar Krishnan
  • Kurunandan Jain
  • Rajkumar Buyya
  • Pandi Vijayakumar
  • Anand Nayyar
  • Muhammad Bilal
  • Houbing Song
Close
<mark>Journal publication date</mark>1/05/2022
<mark>Journal</mark>IEEE Internet of Things Journal
Issue number9
Volume9
Number of pages12
Pages (from-to)6611-6622
Publication StatusPublished
<mark>Original language</mark>English

Abstract

The rapid development and deployment of Internet of Things (IoT) devices in modern networks and Industry 4.0 have attracted substantial interest from cybersecurity researchers. In this study, we propose a software-defined framework that improves network intrusion detection systems by using manufacturer usage description (MUD) to enhance the behavioral monitoring in IoT networks. We aim to explore whether Industrial IoT (IIoT) devices typically serve a common role in cyber-physical systems, and their communications exhibit predictable patterns that can be defined in MUD profile(s) formally and succinctly. We design a framework that utilizes the concept of digital twins and software-defined networking to improve the security of IIoT environments. The MUD data are profiled, and the actions are evaluated on the network digital twin before they are used in the physical network. The behavioral profiling system is updated in real time, thereby improving the overall system security and compliance to policies in the IoT deployment. Evaluation results show that our solution outperforms existing approaches substantially in terms of attack detection accuracy, predicting security incidents, response time, and resource usage.