학술논문

Using MTD and SDN-based Honeypots to Defend DDoS Attacks in IoT
Document Type
Conference
Source
2019 Computing, Communications and IoT Applications (ComComAp) Computing, Communications and IoT Applications (ComComAp), 2019. :392-395 Oct, 2019
Subject
Communication, Networking and Broadcast Technologies
Computing and Processing
Computer crime
IP networks
Internet of Things
Servers
Malware
Botnet
SDN
honeypot
DDoS attack
IoT security
MTD
Language
Abstract
With the rapid development of Internet of Things (IoT), distributed denial of service (DDoS) attacks become the important security threat of the IoT. Characteristics of IoT, such as large quantities and simple function, which have easily caused the IoT devices or servers to be attacked and be turned into botnets for launching DDoS attacks. In this paper, we use software-defined networking (SDN) to develop moving target defense (MTD) architecture that increases uncertainty because of ever changing attack surface. In addition, we deploy SDN-based honeypots to mimic IoT devices, luring attackers and malwares. Finally, experimental results show that combination of MTD and SDN-based honeypots can effectively hide network asset from scanner and defend against DDoS attacks in IoT.