MQTwister: una herramienta de código abierto para realizar ataques Man-in-the-Middle a sistemas IoT basados en el protocolo MQTT

Loading...
Thumbnail Image

Identifiers

Publication date

Authors

Feito-Pin, Daniel

Other responsabilities

Universidade da Coruña. Facultade de Informática

Journal Title

Bibliographic citation

Type of academic work

Abstract

[Resumen]: El creciente ecosistema de dispositivos del Internet de las Cosas se está convirtiendo en un objetivo de interés para los ciberdelincuentes debido a la ausencia de mecanismos de seguridad o a la inapropiada configuración de estos. Si bien las vulnerabilidades resultantes de esta situación ya suponen altos riesgos para usuarios que utilizan estas tecnologías en proyectos personales, la magnitud puede resultar devastadora en el ámbito industrial. Con este trabajo se pretende aportar una nueva solución al repertorio de opciones con las que comprobar la integridad de las redes IoT, en concreto aquellas que hacen uso del protocolo MQTT. Siguiendo una metodología de desarrollo incremental se ha producido una herramienta de código abierto con la que realizar ataques del tipo Man-in-the-Middle al protocolo MQTT, permitiendo la interceptación, modificación y reinyección de los mensajes transmitidos. La aportación resultante, denominada MQTwister, consiste en una herramienta interactiva que aplica reglas de sustitución mediante una sintaxis ad hoc con la que definir el comportamiento de aplicación sobre los mensajes interceptados en tiempo real. Un artículo derivado de este trabajo ha sido presentado en el VIII Congreso XoveTIC, siendo premiado con el Premio Cátedra R “Al más relevante en el ámbito de la seguridad”.
[Abstract]: The growing ecosystem of Internet of Things (IoT) devices is becoming a target for cybercriminals due to the lack of security mechanisms or their improper configuration. While the resulting vulnerabilities already pose significant risks to users employing these technologies in personal projects, the magnitude can be devastating in the industrial sector. This work aims to provide a new solution to the repertoire of options for verifying the integrity of IoT networks, specifically those using the MQTT protocol. Following an incremental development methodology, an open-source tool has been created to perform Man-in-the-Middle attacks on the MQTT protocol, allowing the interception, modification, and reinjection of transmitted messages. The resulting contribution, called MQTwister, is an interactive tool that applies substitution rules using an ad hoc syntax to define the application’s behavior in real time on intercepted messages. An article derived from this work was presented at the VIII XoveTIC Congress and awarded the R Chair Award “To the most relevant in the field of security.”

Description

Editor version

Rights

Attribution-ShareAlike 4.0 International
Attribution-ShareAlike 4.0 International

Except where otherwise noted, this item's license is described as Attribution-ShareAlike 4.0 International