Internet of Things Traffic Characterization using flow and packet analysis

Marius Preda, Ion Bica, Victor-Valeriu Patriciu · 2020

The "Internet of Things" (IoT) era is becoming a reality and the number of smart objects or devices connected to the Internet is rapidly increasing every year. Nevertheless, most IoT devices are known to be built with limited resources (CPU, memory, battery life etc.), thus not every security mechanism can be included in their development process. Given these properties of IoT devices, it became imperative for researchers and specialists in the information security field to understand how "normal" IoT traffic profile looks like to create a baseline for IoT environments behavior and define what characteristics can further be used as indicators for prevention and detection of cyber-attacks. In this paper, we proposed a methodology for distinguishing normal or legitimate traffic from abnormal or malicious traffic and identifying specific IoT environments network traffic characteristics from our analysis. This work is based on two existing public datasets that were examined in order to perform the analysis.

Read the paper · More papers on PaperTik