首页> 外文会议>IEEE International Conference on Consumer Electronics-Asia >Security threat on wearable services: Empirical study using a commercial smartband
【24h】

Security threat on wearable services: Empirical study using a commercial smartband

机译:可穿戴服务的安全威胁:使用商用智能手环的经验研究

获取原文

摘要

As the use of wearable devices such as smartwatches, smartbands and wearable glasses increases, the concern about their security also becomes serious. In this study, we explore various vulnerabilities of wearable services with three aspects: device itself, wearable gateway and server. Then, we devise three attack scenarios, namely an illegal device pairing attack, a fake wearable gateway attack and an insecure code based attack. Using a real commercial smartband used for healthcare monitoring, we observe that these scenarios actually can intrude wearable services, obtaining privacy data such as personal identifiers and health information. Finally, we analyze these attacks with the viewpoint of the OWASP (Open Web Application Security Project) IoT (Internet of Things) Top 10 security weaknesses and suggest countermeasures that can prevent these attacks.
机译:随着诸如智能手表,智能手环和可穿戴眼镜之类的可穿戴设备的使用增加,对其安全性的关注也变得严重。在这项研究中,我们从三个方面探讨了可穿戴服务的各种漏洞:设备本身,可穿戴网关和服务器。然后,我们设计了三种攻击情形,即非法设备配对攻击,伪造的可穿戴网关攻击和基于不安全代码的攻击。使用用于医疗保健监控的真实商业智能手环,我们观察到这些场景实际上可以侵入可穿戴服务,获得诸如个人标识符和健康信息之类的隐私数据。最后,我们从OWASP(开放Web应用程序安全项目)IoT(物联网)的十大安全漏洞的角度分析这些攻击,并提出可以防止这些攻击的对策。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号