My name is Waqas Ahmed and I am a PhD Cyber Security Scholar of Air University Pakistan. I am working on IoT Forensics. Please guide me regarding this area and latest research challenges in this area. Thank You!
our network world was so far relatively simple and clearly structured. Hardware and software as well as the network infrastructure and its applications were logically separated from one another. This logical separation will soon be obsolete as the new paradigm is Software Defined Everything (SDx). This paradigm has a huge impact on IoT services. We are already talking about SD-IoT. In particular, the use of the Blockchain-based digital currency Bitcoin or in the future IOTA can lead to an Eldorado for various criminal offenses. Forensics is therefore extremely important, especially with regard to the emergence of SD-IoT and the use of digital currencies.
The possibility of malicious fraudulent actions on the Internet arose mainly from the fact that the hash values of computers in Peer-to-Peer Metworks (P2P Networks) are used as addresses. The computers with addresses based on hash values cannot be localized. With the help of malware (Trojans on an E-Mail Server) hash values can be linked to an officia lE-Mail Address. As a result, a large number of fraudulent emails can be sent from computers on a P2P Network (e.g. Darknet) using a single official E-Mail Address. This is an extremely important threat in today's Internet. This can lead to misuse of IoT and especially SD-IoT. Because of this, forensics is extremely important here. In the future, we shouldn't refer to SD-IoT as the Software Defined Internet of Threats.
See for exampleSnehal Sathwara, Nitul Dutta, Emil Pricop: „IoT Forensic: A digital investigation framework for IoT systems“; ECAI 2018 - International Conference – 10th Edition Electronics, Computers and Artificial Intelligence, June 2018
Francesco Servida, Eoghan Caseyerlay:„IoT forensic challenges and opportunities for digital traces“, Digital Investigation, Vol. 28, April 2019 https://doi.org/10.1016/j.diin.2019.01.012
Mehran Pourvahab, Gholamhossein Ekbatanifard: „An Efficient Forensics Architecture in Software-Defined Networking-IoT Using Blockchain Technology“; IEEE Access, Vol. 7, July 2019
In many cases the forensic in IoT refers to the tracability of the IoT devices and processes, ie detection and analysis evidences of digital traces.
Give you an example, Lora is a long range wireless technology that is becoming more popular for smart cities and smart home application. We tested the spoofing of the parking and trash bin sensors and Lora Gateway accept spoofed devices, we tested sensors with injected malware and Lora GW accepted such devices. Now question that can be useful for your research: how you can distinguish spoofed device from genuis device and trace what was changed in the device or process.