CAREER: Foundations for IoT Cloud Security
职业:物联网云安全的基础
基本信息
- 批准号:2145675
- 负责人:
- 金额:$ 55.07万
- 依托单位:
- 依托单位国家:美国
- 项目类别:Continuing Grant
- 财政年份:2022
- 资助国家:美国
- 起止时间:2022-07-01 至 2027-06-30
- 项目状态:未结题
- 来源:
- 关键词:
项目摘要
The Internet of things (IoT) cloud is one of the key pillars of the foundation upon which modern IoT systems rest (Smart Home, Industrial, Smart City, Retail, and Health applications, etc.). Newer IoT devices are taking advantage of the managed Platform-as-a-Service (PaaS) and Infrastructure-as-a-Service (IaaS) IoT cloud services (e.g., AWS IoT Core, Azure IoT Hub), which offload much of the security responsibilities and deployment burden from device manufacturers to the public cloud providers. IoT clouds must manage trust for hundreds of millions of IoT devices and users, and provide device manufacturers reliable and usable tools for secure IoT deployments. In the IoT cloud systems, compromised security or improper deployments can cause hazardous and deadly consequences. The outcomes of the proposed work will (1) establish the foundational scientific theory, security principles, and practices that define the field of IoT cloud security and (2) protect PaaS and IaaS IoT clouds that underlie the wide array of Smart Home, Health, Industrial, Smart City, Retail, and critical infrastructure from cyberattacks. Techniques and tools to be developed in this project will be used by IoT developers, security analysts in industry, academic researchers, and a wide range of students (system security, formal methods, and engineering).IoT cloud systems have specific challenges imposed by their requirements of large-scale distributed trust management and secure support of emerging IoT computing paradigms such as IoT interoperability, which preclude direct application of solutions devised for general-purpose systems. The project will characterize these challenges while addressing three key, novel research thrusts. The first thrust is to formalize the threats concerning the emerging paradigms of IoT interoperability to conduct novel attacks, and formally verify their security in IoT cloud systems and protocols. The second thrust is to explore and understand emerging cyberattacks leveraging misconfiguration of cloud IoT policies by device manufacturers, and develop innovative formal modeling and verification approaches to elevate security assurance of policy specification and cloud-based IoT deployments. The third thrust is informed by the first two thrusts, which identify the threats and challenges, and is to fundamentally address the threats by developing a systematized IoT-cloud security framework with a set of innovative techniques, including secure clean-slate design of IoT interoperability protocols, a novel in-device channel control framework, and hardened supply chain for IoT brokers (a core component of IoT clouds). Through these thrusts, this project will produce new foundational understanding and methods to safeguard modern and the next generation of IoT cloud systems.This award reflects NSF's statutory mission and has been deemed worthy of support through evaluation using the Foundation's intellectual merit and broader impacts review criteria.
物联网(IoT)云是现代物联网系统(智能家居、工业、智慧城市、零售和健康应用等)的关键支柱之一。较新的物联网设备正在利用托管平台即服务(PaaS)和云结构即服务(IaaS)物联网云服务(例如,AWS IoT Core、Azure IoT Hub),将大部分安全责任和部署负担从设备制造商转移到公共云提供商。物联网云必须管理数亿物联网设备和用户的信任,并为设备制造商提供可靠和可用的工具,以实现安全的物联网部署。在物联网云系统中,安全性受损或部署不当可能会导致危险和致命的后果。拟议工作的成果将(1)建立定义物联网云安全领域的基础科学理论、安全原则和实践,(2)保护作为智能家居、健康、工业、智能城市、零售和关键基础设施基础的PaaS和IaaS物联网云免受网络攻击。在这个项目中开发的技术和工具将被物联网开发人员,行业安全分析师,学术研究人员和广泛的学生使用物联网云系统具有由其大规模分布式信任管理和新兴物联网计算范例的安全支持的要求所强加的特定挑战,所述新兴物联网计算范例诸如物联网互操作性、这排除了为通用系统设计的解决方案的直接应用。该项目将描述这些挑战,同时解决三个关键的,新颖的研究重点。第一个重点是正式确定与物联网互操作性的新兴范例有关的威胁,以进行新的攻击,并正式验证其在物联网云系统和协议中的安全性。第二个重点是探索和理解利用设备制造商对云物联网策略的错误配置的新兴网络攻击,并开发创新的正式建模和验证方法,以提高策略规范和基于云的物联网部署的安全保证。第三个重点是由前两个重点确定的,这两个重点确定了威胁和挑战,并通过开发一套创新技术的系统化物联网云安全框架从根本上解决威胁,包括物联网互操作性协议的安全干净设计,新型设备内渠道控制框架和物联网代理的硬化供应链(物联网云的核心组件)。该奖项反映了NSF的法定使命,通过使用基金会的知识价值和更广泛的影响审查标准进行评估,被认为值得支持。
项目成果
期刊论文数量(3)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)
Perils and Mitigation of Security Risks of Cooperation in Mobile-as-a-Gateway IoT
- DOI:10.1145/3548606.3560590
- 发表时间:2022-11
- 期刊:
- 影响因子:0
- 作者:Xin'an Zhou;Jiale Guan;Luyi Xing;Zhiyun Qian
- 通讯作者:Xin'an Zhou;Jiale Guan;Luyi Xing;Zhiyun Qian
Who's In Control? On Security Risks of Disjointed IoT Device Management Channels
- DOI:10.1145/3460120.3484592
- 发表时间:2021-11
- 期刊:
- 影响因子:0
- 作者:Yan Jia;Bin Yuan;Luyi Xing;Dongfang Zhao;Yifan Zhang;Xiaofeng Wang;Yijing Liu;Kaimin Zheng;Peyton Crnjak;Yuqing Zhang;Deqing Zou;Hai Jin
- 通讯作者:Yan Jia;Bin Yuan;Luyi Xing;Dongfang Zhao;Yifan Zhang;Xiaofeng Wang;Yijing Liu;Kaimin Zheng;Peyton Crnjak;Yuqing Zhang;Deqing Zou;Hai Jin
P-Verifier: Understanding and Mitigating Security Risks in Cloud-based IoT Access Policies
- DOI:10.1145/3548606.3560680
- 发表时间:2022-11
- 期刊:
- 影响因子:0
- 作者:Ze Jin;Luyi Xing;Yiwei Fang;Yan Jia;Bin Yuan;Qixu Liu
- 通讯作者:Ze Jin;Luyi Xing;Yiwei Fang;Yan Jia;Bin Yuan;Qixu Liu
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
数据更新时间:{{ journalArticles.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ monograph.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ sciAawards.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ conferencePapers.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ patent.updateTime }}
Luyi Xing其他文献
Superoxide radical mediated persulfate activation by nitrogen doped bimetallic MOF (FeCo/N-MOF) for efficient tetracycline degradation, , 282 (2022): 120124.
氮掺杂双金属 MOF (FeCo/N-MOF) 介导的超氧自由基介导的过硫酸盐活化可有效降解四环素,, , 282 (2022): 120124。
- DOI:
- 发表时间:
2021 - 期刊:
- 影响因子:8.6
- 作者:
Yifei Zhang;Jia Wei;Luyi Xing;Jiamei Li;Mengdie Xu;Guoping Pan;Jun Li - 通讯作者:
Jun Li
A chip thermal management method realizing integrated applications of cooling, power generation and heat flow measurement based on thermoelectric effect
- DOI:
10.1016/j.applthermaleng.2024.124739 - 发表时间:
2025-01-15 - 期刊:
- 影响因子:
- 作者:
Liuyijie Huang;Luyi Xing;Yihua Zheng;Huimin Yao - 通讯作者:
Huimin Yao
Cloud repository as a malicious service: challenge, identification and implication
云存储库作为恶意服务:挑战、识别和影响
- DOI:
- 发表时间:
2018 - 期刊:
- 影响因子:0
- 作者:
Xiaojing Liao;Sumayah A. Alrwais;Kan Yuan;Luyi Xing;Xiaofeng Wang;S. Hao;R. Beyah - 通讯作者:
R. Beyah
SmartPatch: Verifying the Authenticity of the Trigger-Event in the IoT Platform
SmartPatch:验证物联网平台中触发事件的真实性
- DOI:
10.1109/tdsc.2022.3162312 - 发表时间:
2023-03 - 期刊:
- 影响因子:7.3
- 作者:
Bin Yuan;Yuhan Wu;Maogen Yang;Luyi Xing;Xuchang Wang;Deqing Zou;Hai Jin - 通讯作者:
Hai Jin
Luyi Xing的其他文献
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
{{ truncateString('Luyi Xing', 18)}}的其他基金
Collaborative Research: EAGER: Towards Safeguarding the Emerging Miniapp Paradigm in Mobile Super Apps
合作研究:EAGER:捍卫移动超级应用中新兴的小应用范式
- 批准号:
2330265 - 财政年份:2023
- 资助金额:
$ 55.07万 - 项目类别:
Standard Grant
FMitF: Track II: Usability, Scalability, and Deployment Improvement of VerioT
FMITF:轨道 II:VerioT 的可用性、可扩展性和部署改进
- 批准号:
2124225 - 财政年份:2021
- 资助金额:
$ 55.07万 - 项目类别:
Standard Grant
相似海外基金
Mathematical Foundations of Intelligence: An "Erlangen Programme" for AI
智能的数学基础:人工智能的“埃尔兰根计划”
- 批准号:
EP/Y028872/1 - 财政年份:2024
- 资助金额:
$ 55.07万 - 项目类别:
Research Grant
SAFER - Secure Foundations: Verified Systems Software Above Full-Scale Integrated Semantics
SAFER - 安全基础:高于全面集成语义的经过验证的系统软件
- 批准号:
EP/Y035976/1 - 财政年份:2024
- 资助金额:
$ 55.07万 - 项目类别:
Research Grant
Statistical Foundations for Detecting Anomalous Structure in Stream Settings (DASS)
检测流设置中的异常结构的统计基础 (DASS)
- 批准号:
EP/Z531327/1 - 财政年份:2024
- 资助金额:
$ 55.07万 - 项目类别:
Research Grant
Social Foundations of Cryptography
密码学的社会基础
- 批准号:
EP/X017524/1 - 财政年份:2024
- 资助金额:
$ 55.07万 - 项目类别:
Research Grant
Collaborative Research: AF: Medium: Foundations of Oblivious Reconfigurable Networks
合作研究:AF:媒介:遗忘可重构网络的基础
- 批准号:
2402851 - 财政年份:2024
- 资助金额:
$ 55.07万 - 项目类别:
Continuing Grant
Conference: Theory and Foundations of Statistics in the Era of Big Data
会议:大数据时代的统计学理论与基础
- 批准号:
2403813 - 财政年份:2024
- 资助金额:
$ 55.07万 - 项目类别:
Standard Grant
Social foundations of cryptography
密码学的社会基础
- 批准号:
EP/X016226/1 - 财政年份:2024
- 资助金额:
$ 55.07万 - 项目类别:
Research Grant
Foundations of Classical and Quantum Verifiable Computing
经典和量子可验证计算的基础
- 批准号:
MR/X023583/1 - 财政年份:2024
- 资助金额:
$ 55.07万 - 项目类别:
Fellowship
CAREER: Statistical foundations of particle tracking and trajectory inference
职业:粒子跟踪和轨迹推断的统计基础
- 批准号:
2339829 - 财政年份:2024
- 资助金额:
$ 55.07万 - 项目类别:
Continuing Grant
CAREER: Architectural Foundations for Practical Privacy-Preserving Computation
职业:实用隐私保护计算的架构基础
- 批准号:
2340137 - 财政年份:2024
- 资助金额:
$ 55.07万 - 项目类别:
Continuing Grant