物联网环境下基于区块链的高效固件更新框架

Meng-Hsuan Tsai, Yu-Cheng Hsu, N. Lo
{"title":"物联网环境下基于区块链的高效固件更新框架","authors":"Meng-Hsuan Tsai, Yu-Cheng Hsu, N. Lo","doi":"10.1109/AsiaJCIS50894.2020.00030","DOIUrl":null,"url":null,"abstract":"Recently, massive deployment of Internet of Things (IoT) devices has accelerated digital transformation of modern society in various aspects. Naturally, how to ensure security of deployed IoT devices has become an important and practical issue. Several successful large-scale DDoS attacks were utilized vulnerabilities of firmware on IoT devices in the past couple of years. Therefore, effective and efficient firmware update solution on IoT devices is in demand. In this study, an automatic real-time firmware update framework based on blockchain technology and MQTT protocol is proposed. To support automatic real-time firmware update operation on deployed IoT devices, multiple MQTT servers are installed in corresponding blockchain nodes to execute firmware patch delivery operation by the design of our framework. Blockchain technology is used to record the original manufacturer of a published firmware patch for a dedicated IoT device and smart contract is adopted to discover MQTT service nodes in a blockchain network. Data integrity of a newly generated firmware patch is preserved by distributing the patch with its hashed value. A framework prototype is constructed and experiments are conducted. Based on the experimental results, the proposed framework can efficiently and securely deliver firmware patches to targeted gateways in real-time scale.","PeriodicalId":247481,"journal":{"name":"2020 15th Asia Joint Conference on Information Security (AsiaJCIS)","volume":"32 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2020-08-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"3","resultStr":"{\"title\":\"An Efficient Blockchain-based Firmware Update Framework for IoT Environment\",\"authors\":\"Meng-Hsuan Tsai, Yu-Cheng Hsu, N. Lo\",\"doi\":\"10.1109/AsiaJCIS50894.2020.00030\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"Recently, massive deployment of Internet of Things (IoT) devices has accelerated digital transformation of modern society in various aspects. Naturally, how to ensure security of deployed IoT devices has become an important and practical issue. Several successful large-scale DDoS attacks were utilized vulnerabilities of firmware on IoT devices in the past couple of years. Therefore, effective and efficient firmware update solution on IoT devices is in demand. In this study, an automatic real-time firmware update framework based on blockchain technology and MQTT protocol is proposed. To support automatic real-time firmware update operation on deployed IoT devices, multiple MQTT servers are installed in corresponding blockchain nodes to execute firmware patch delivery operation by the design of our framework. Blockchain technology is used to record the original manufacturer of a published firmware patch for a dedicated IoT device and smart contract is adopted to discover MQTT service nodes in a blockchain network. Data integrity of a newly generated firmware patch is preserved by distributing the patch with its hashed value. A framework prototype is constructed and experiments are conducted. Based on the experimental results, the proposed framework can efficiently and securely deliver firmware patches to targeted gateways in real-time scale.\",\"PeriodicalId\":247481,\"journal\":{\"name\":\"2020 15th Asia Joint Conference on Information Security (AsiaJCIS)\",\"volume\":\"32 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2020-08-01\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"3\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2020 15th Asia Joint Conference on Information Security (AsiaJCIS)\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/AsiaJCIS50894.2020.00030\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2020 15th Asia Joint Conference on Information Security (AsiaJCIS)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/AsiaJCIS50894.2020.00030","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 3

摘要

近年来,物联网设备的大量部署加速了现代社会各方面的数字化转型。当然,如何确保已部署物联网设备的安全已成为一个重要而现实的问题。在过去几年中,几次成功的大规模DDoS攻击都利用了物联网设备上的固件漏洞。因此,需要针对物联网设备提供高效的固件更新解决方案。本文提出了一种基于区块链技术和MQTT协议的自动实时固件更新框架。为了支持在已部署物联网设备上的自动实时固件更新操作,我们的框架设计在相应的区块链节点上安装了多个MQTT服务器来执行固件补丁交付操作。区块链技术用于记录IoT专用设备发布固件补丁的原始制造商,采用智能合约技术发现区块链网络中的MQTT服务节点。新生成的固件补丁通过散列值分发补丁来保持数据完整性。构建了框架原型并进行了实验。实验结果表明,该框架能够高效、安全地实时向目标网关发送固件补丁。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
An Efficient Blockchain-based Firmware Update Framework for IoT Environment
Recently, massive deployment of Internet of Things (IoT) devices has accelerated digital transformation of modern society in various aspects. Naturally, how to ensure security of deployed IoT devices has become an important and practical issue. Several successful large-scale DDoS attacks were utilized vulnerabilities of firmware on IoT devices in the past couple of years. Therefore, effective and efficient firmware update solution on IoT devices is in demand. In this study, an automatic real-time firmware update framework based on blockchain technology and MQTT protocol is proposed. To support automatic real-time firmware update operation on deployed IoT devices, multiple MQTT servers are installed in corresponding blockchain nodes to execute firmware patch delivery operation by the design of our framework. Blockchain technology is used to record the original manufacturer of a published firmware patch for a dedicated IoT device and smart contract is adopted to discover MQTT service nodes in a blockchain network. Data integrity of a newly generated firmware patch is preserved by distributing the patch with its hashed value. A framework prototype is constructed and experiments are conducted. Based on the experimental results, the proposed framework can efficiently and securely deliver firmware patches to targeted gateways in real-time scale.
求助全文
通过发布文献求助,成功后即可免费获取论文全文。 去求助
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术官方微信