Abstract
The lack of security measures in the Internet of Things (IoT) devices and their persistent online connectivity give adversaries an opportunity to target them or abuse them as intermediary targets for volumetric attacks such as Distributed Denial-of-Service (DDoS) campaigns. In this paper, we analyze IoT malware with a focus on endpoints to understand the affinity between the dropzones and their target IP addresses, and to understand the different patterns among them. Towards this goal, we reverse-engineer 2,423 IoT malware samples to obtain IP addresses.We further augment additional information about the endpoints from Internet-wide scanners, including Shodan and Censys. We then perform a deep data-driven analysis of the dropzones and their target IP addresses and further examine the attack surface of the target device space.
Author supplied keywords
Cite
CITATION STYLE
Choi, J., Anwar, A., Alasmary, H., Spaulding, J., Nyang, D., & Mohaisen, A. (2019). Poster: Analyzing endpoints in the internet of things malware. In WiSec 2019 - Proceedings of the 2019 Conference on Security and Privacy in Wireless and Mobile Networks (pp. 288–289). Association for Computing Machinery, Inc. https://doi.org/10.1145/3317549.3326295
Register to see more suggestions
Mendeley helps you to discover research relevant for your work.