Guardian of the HAN: Thwarting Mobile Attacks on Smart-Home Devices Using OS-level Situation Awareness
Soteris Demetriou, Nan Zhang, Yeonjoon Lee, Xiaofeng Wang, Carl, Gunter, Xiaoyong Zhou, Michael Grace

TL;DR
This paper introduces Hanguard, a novel OS-level approach that enhances smart-home security by controlling IoT device access through mobile apps without requiring device modifications, leveraging router and OS cooperation.
Contribution
Hanguard provides a backward-compatible, fine-grained access control mechanism for IoT devices using OS-level awareness and router enforcement, without altering IoT hardware or apps.
Findings
Hanguard effectively prevents malicious app attacks on IoT devices.
The system is efficient with minimal performance overhead.
Implemented on Android, iOS, and popular routers, demonstrating broad applicability.
Abstract
A new development of smart-home systems is to use mobile apps to control IoT devices across a Home Area Network (HAN). Those systems tend to rely on the Wi-Fi router to authenticate other devices; as verified in our study, IoT vendors tend to trust all devices connected to the HAN. This treatment exposes them to the attack from malicious apps, particularly those running on authorized phones, which the router does not have information to control, as confirmed in our measurement study. Mitigating this threat cannot solely rely on IoT manufacturers, which may need to change the hardware on the devices to support encryption, increasing the cost of the device, or software developers who we need to trust to implement security correctly. In this work, we present a new technique to control the communication between the IoT devices and their apps in a unified, backward-compatible way. Our…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
Taxonomy
TopicsAdvanced Malware Detection Techniques · Network Security and Intrusion Detection · Digital and Cyber Forensics
