A Study of Data Store-based Home Automation

A Study of Data Store-based Home Automation
复制标题

DOI:
10.1145/3292006.3300031
复制
发表时间:
2018-12
期刊:
Proceedings of the Ninth ACM Conference on Data and Application Security and Privacy
影响因子:
--
通讯作者:
Kaushal Kafle;Kevin Moran;Sunil Manandhar;Adwait Nadkarni;D. Poshyvanyk
Kaushal Kafle;Kevin Moran;Sunil Manandhar;Adwait Nadkarni;D. Poshyvanyk
中科院分区:
其他
文献类型:
--
作者:
Kaushal Kafle;Kevin Moran;Sunil Manandhar;Adwait Nadkarni;D. Poshyvanyk

文献摘要

被引文献

相似文献

家庭自动化平台通过使消费者能够自动化房屋中物理对象的各个方面来提供新的便利水平。尽管便利性是有益的,但平台或集成的第三方产品中的安全缺陷可能会对用户物理环境的完整性产生严重的影响。在本文中,我们对两个流行的智能家庭平台(Google的Nest Platform和Philips Hue)进行了系统的安全评估,该平台通过在集中式中对状态变量进行操纵来实施家庭自动化“例程”(即涉及应用程序和设备的触发器行动程序)数据存储。我们的半自动化分析研究了平台访问控制执法,非系统执行程序的严格性以及滥用常规的潜力。该分析产生了十个关键发现,具有严重的安全性。例如,我们证明了在Nest平台中滥用智能家庭例程进行横向特权升级的潜力,并说明了Nest的产品审查系统如何无效防止其检查的多个攻击阶段,并演示了新兴平台如何可能无法通过允许应用程序从用户的智能家庭中添加/删除其他应用程序,从而无法提供最低最小的安全性。我们的发现引起了人们对通过集中数据存储执行例程的平台独特安全挑战的关注,并突出了在新兴家庭自动化平台中设计安全性的重要性。
Home automation platforms provide a new level of convenience by enabling consumers to automate various aspects of physical objects in their homes. While the convenience is beneficial, security flaws in the platforms or integrated third-party products can have serious consequences for the integrity of a user's physical environment. In this paper we perform a systematic security evaluation of two popular smart home platforms, Google's Nest platform and Philips Hue, that implement home automation "routines" (i.e., trigger-action programs involving apps and devices) via manipulation of state variables in a centralized data store. Our semi-automated analysis examines, among other things, platform access control enforcement, the rigor of non-system enforcement procedures, and the potential for misuse of routines. This analysis results in ten key findings with serious security implications. For instance, we demonstrate the potential for the misuse of smart home routines in the Nest platform to perform a lateral privilege escalation, illustrate how Nest's product review system is ineffective at preventing multiple stages of this attack that it examines, and demonstrate how emerging platforms may fail to provide even bare-minimum security by allowing apps to arbitrarily add/remove other apps from the user's smart home. Our findings draw attention to the unique security challenges of platforms that execute routines via centralized data stores, and highlight the importance of enforcing security by design in emerging home automation platforms.