Mobile sinks are needed in many sensor network applications for efficient data collection, data querying, localized sensor reprogramming, identifying and revoking compromised sensors, and other network maintenance. Employing mobile sinks however raises a new security challenge: if a mobile sink is given too many privileges, it will become very attractive for attack and compromise. Using a compromised mobile sink, an adversary may easily bring down or even take over the sensor network. Thus, security mechanisms that can tolerate mobile sink compromises are essential. In this paper, based on the principle of least privilege, we first propose several efficient schemes to restrict the privilege of a mobile sink without impeding its capability of carrying out any authorized operations for an assigned task. To further reduce the possible damages caused by a compromised mobile sink, we then propose efficient message forwarding schemes for depriving the privilege assigned to a compromised mobile sink immediately after its compromise has been detected. Through detailed analysis and simulations, we show that our schemes are secure and efficient, and are highly practical for sensor networks consisting of the current generation of sensors.
|
792
|
GPSR: Greedy Perimeter Stateless Routing for Wireless Networks
– Karp, Kung
- 2000
|
|
480
|
How to construct random functions
– Goldreich, Goldwasser, et al.
- 1986
|
|
384
|
Routing with guaranteed delivery in ad hoc wireless networks
– Bose, Morin, et al.
|
|
320
|
SPINS: Security protocols for sensor networks
– Perrig, Szewczyk, et al.
- 2001
|
|
236
|
A key-management scheme for distributed sensor networks
– Eschenauer, Gligor
- 2002
|
|
233
|
Random key predistribution schemes for sensor networks
– Chan, Perrig, et al.
- 2003
|
|
200
|
The RC5 encryption algorithm
– Rivest
- 1995
|
|
190
|
Packet leashes: A defense against wormhole attacks in wireless networks
– Hu, Perrig, et al.
- 2003
|
|
185
|
A certified digital signature
– Merkle
- 1990
|
|
163
|
A pairwise key pre-distribution scheme for wireless sensor networks
– Du, Deng, et al.
|
|
157
|
Establishing pairwise keys in distributed sensor networks
– Liu, Ning
|
|
142
|
Denial of Service in Sensor Networks
– Wood, Stankovic
|
|
123
|
A two-tier data dissemination model for large-scale wireless sensor networks
– Ye, Luo, et al.
- 2002
|
|
118
|
LEAP: Efficient Security Mechanisms for Large-Scale Distributed Sensor Networks
– Zhu, Setia, et al.
- 2003
|
|
112
|
Timing-sync protocol for sensor networks,” presented at
– Ganeriwal, Kumar, et al.
- 2003
|
|
107
|
Worst-case optimal and average-case efficient geometric ad-hoc routing
– Kuhn, Wattenhofer, et al.
- 2003
|
|
96
|
PerfectlySecure Key Distribution for Dynamic Conferences
– Blundo, Santis, et al.
- 1998
|
|
52
|
Establishing Pairwise Keys For Secure Communication in Ad Hoc Networks: A Probabilistic Approach
– Zhu, Xu, et al.
|
|
48
|
SeRLoc: Secure Range-Independent Localization for Wireless Sensor Networks
– Lazos, Poovendran
- 2004
|
|
41
|
An Interleaved Hop-by-Hop Authentication Scheme for Filtering of Injected False Data
– Zhu, Setia, et al.
|
|
38
|
Reputation-Based Framework for High Integrity Sensor Networks
– Ganeriwal, Srivastava
|
|
36
|
P.: Efficient distribution of key chain commitments for broadcast authentication in distributed sensor networks
– Liu, Ning
- 2003
|
|
28
|
Mitigating Routing Misbehavior
– Marti, Giuli, et al.
- 2000
|
|
27
|
Secure Routing in Sensor Networks: Attacks and Countermeasures
– Karlof, Wagner
- 2003
|
|
26
|
Intelligent fluid infrastructure for embedded networking
– Kansal, Somasundara, et al.
- 2003
|
|
22
|
Geography informed Energy conservation for AdHoc Routing
– Xu, Heidemann, et al.
|
|
22
|
Location-aware key management scheme for wireless sensor networks
– Huang, Mehta, et al.
- 2004
|
|
18
|
Security support for in-network processing in wireless sensor networks
– Deng, Han, et al.
- 2003
|
|
17
|
Group rekeying for filtering false data in sensor networks: A predistribution and local collaboration-based approach
– Zhang, Cao
- 2005
|
|
16
|
Statistical en-route detection and filtering of injected false data in sensor networks
– Ye, Luo, et al.
- 2004
|
|
14
|
GPS-free Positioning
– Capkun, Hamdi, et al.
- 2002
|
|
12
|
E.Cayirci, “Wireless Sensor Networks: A Survey
– Akyildiz, Su, et al.
- 2002
|
|
4
|
Data Dissemination with Ring-Based Index for Wireless Sensor Networks
– Zhang, Cao, et al.
- 2003
|
|
4
|
GeoTORA: A Protocol for Geocasting
– Ko, Vaidya
- 2000
|
|
3
|
Statistical En-route Filtering
– Ye, Luo, et al.
- 2004
|
|
2
|
The EECS department, “Cotsbots: The mobile mote-based robots,” http://www-bsac.eecs.berkeley.edu/projects/cotsbots
– Berkeley
|
|
1
|
Efficient Collection of Sensor Data
– Tirta, Li, et al.
- 2004
|
|
1
|
Intrusion tolerance strategies in wireless sensor networks
– Deng, Han, et al.
- 2004
|
|
1
|
The protection of information in computing systems
– Stajano, Anderson
- 1975
|
|
1
|
SPINS: Security Suite for Sensor networks,” Mobicom’01
– Perrig, Szewczyk, et al.
- 2001
|