Protocol-agnostic IoT Device Classification on Encrypted Traffic Using Link-Level Flows

dc.contributor.authorMorales, Gabriel A.
dc.contributor.authorBienek-Parrish, Adam
dc.contributor.authorJenkins, Patrick
dc.contributor.authorSlavin, Rocky
dc.date.accessioned2023-11-27T17:02:32Z
dc.date.available2023-11-27T17:02:32Z
dc.date.issued2023-05-09
dc.description.abstractConvenience is a strong driver for the evolution of technology. Such efforts have given rise to the Internet-of-Things (IoT), defined as the network of everyday devices (i.e., “things”) ranging from light bulbs to smart speakers, connected to the Internet and each other. IoT devices frequently transmit data wirelessly which can be passively collected by an adversary. In this work we present a methodology with which to perform device classification on encrypted traffic in a protocol-agnostic manner by applying network flow analysis to link-level data. Our evaluation demonstrates successful device classification for 15 device categories with an overall weighted F1-Score of 95% on a dataset consisting of Wi-Fi, Bluetooth, and Zigbee traffic. Furthermore, we explore model transferability between encrypted and decrypted datasets on these three networking protocols and present our flow generation tool, ProtoFlow.
dc.description.departmentComputer Science
dc.identifier.citationMorales, G. A., Bienek-Parrish, A., Jenkins, P., & Slavin, R. (2023). Protocol-agnostic IoT Device Classification on Encrypted Traffic Using Link-Level Flows. Paper presented at Cyber-Physical Systems and Internet of Things Week 2023, San Antonio, TX, USA. https://doi.org/10.1145/3576914.3587487
dc.identifier.isbn979-8-4007-0049-1
dc.identifier.otherhttps://doi.org/10.1145/3576914.3587487
dc.identifier.urihttps://hdl.handle.net/20.500.12588/2243
dc.language.isoen_US
dc.publisherAssociation for Computing Machinery
dc.rightsAttribution-NonCommercial-ShareAlike 3.0 United Statesen
dc.rights.urihttp://creativecommons.org/licenses/by-nc-sa/3.0/us/
dc.subjectInternet-of-Things
dc.subjectIoT
dc.subjecttraffic flow
dc.subjectnetwork analysis
dc.subjectnetworking standards
dc.subjectclassification
dc.titleProtocol-agnostic IoT Device Classification on Encrypted Traffic Using Link-Level Flows
dc.typeArticle

Files

Original bundle

Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
Morales et al 2023 - Protocol-agnostic IoT Device Classification on Encrypted Traffic Using Link-Level Flows.pdf
Size:
1 MB
Format:
Adobe Portable Document Format

License bundle

Now showing 1 - 1 of 1
No Thumbnail Available
Name:
license.txt
Size:
1.86 KB
Format:
Item-specific license agreed upon to submission
Description: