透過您的圖書館登入
IP:18.117.79.92
  • 期刊

Shodan為基礎的IoT安全等級與防護機制

Shodan-based IoT Security Level and Protection Mechanism

摘要


資訊與網路技術持續演進,促使IoT的應用不斷擴增且融入民眾日常活動,大幅提升民眾生活品質與便利性。IoT架構透過感測器大量蒐集民眾活動與消費行為,傳至雲端分析,可提升企業與組織的營運績效與服務品質,不過,業者未針對資訊安全善盡保護責任,勢必衝擊民眾個人與敏感性資料安全。政府單位與國際安全機構無法具體管制與規範IoT裝置的安全性,使得IoT安全議題成為安全威脅。在IoT年代,為了保護民眾個人與敏感性資料安全,本文以IoT網路搜尋引擎Shodan為依據,識別特定網域的IoT裝置型號與製造商,再透過多項安全事證剖析裝置的安全等級,主動確認IoT裝置的安全性,擬定一套IoT資訊安全防護措施,適時提醒民眾採取安全防範措施,以保護關鍵個人與敏感性資料安全。

並列摘要


The continuous evolution of information and network technologies has promoted the continuous expansion of IoT applications and integration into people's daily activities, which has greatly improved people's quality of life and convenience. The IoT architecture collects a large number of people's activities and consumption behaviors through sensors, and transmits them to the back-end analysis, which can improve the operational performance and service quality of enterprises and organizations. However, if the industry fails to fulfill its protection responsibility for information security, it will inevitably impact the personal data and sensitive data security. Government units and international security agencies cannot specifically regulate and regulate the security of IoT devices, making IoT security issues a security threat. In the IoT era, in order to protect the personal and sensitive data of the people, this paper uses the IoT network search engine shodan as the basis to identify the IoT device types and manufacturers in specific domains. And combines several IoT security evidences to determine the security levels of IoT device. Draw up the IoT information security precautions, concretely confirm the security levels of IoT devices, and promptly remind the people to take security precautions to protect key personal data and sensitive data security.

參考文獻


陳響亮,沈彥成,& 馮盟翰,2017,基於雲端與邊際運算架構之嵌入式居家環境品質偵測系統,TANET 2017 臺灣網際網路研討會,pp. 183- 188。
鄭逸寧,2011,物聯網技術大剖析,iThome,2011 年 12 月。 https://www.ithome.com.tw/news/ 90461
Chen, C. W., 2016,以四層式物聯網架構提昇物聯網環境之安全與可用性,朝陽科技大學資訊管理系學位論文。
薛正,2019,物聯生活不給「駭」ULIoT安全評等大揭密,Taiwan, UL。https://taiwan.ul.com/blog/ 201912_iotsecurityrating/
林宜進 ( 2019),Shodan 簡介與應用,NASOC。http://www.tp 1rc.edu.tw/tpnet 2019/ 2019meeting 1_ 5_ 1.pdf

延伸閱讀