A novel vulnerability detection method for ZigBee MAC layer
by Siwei Peng; Baojiang Cui; Ru Jia; Shurui Liang; Yiying Zhang
International Journal of Grid and Utility Computing (IJGUC), Vol. 4, No. 2/3, 2013

Abstract: Due to the hostile environment, open communication and implementation vulnerability, ZigBee is vulnerable to various attacks. But there are few effective vulnerability detection methods. In this paper, we design the ZigBee Border Conditions Based Tester (ZBCBT) to detect vulnerabilities on MAC layer. It generates elaborated frames (test cases) transmitting to the target nodes. Based on ZBCBT, we present a ZigBee Border Conditions Algorithm (ZBCA) and a hostile test framework (HTF) for better test performance. Comparing with Random Testing (RT) or fuzz methods, ZBCA tests border values of every field in the frame to improve the efficiency. HTF is a unique framework that ZBCBT simulates an attacker is utilised for further tests. The experimental results, including one frame triggers the network crash, have proved ZBCBT's effectiveness. Thus, by using ZBCA and HTF, this novel vulnerability detection method is a significant add-on approach for ZigBee security.

Online publication date: Thu, 18-Sep-2014

The full text of this article is only available to individual subscribers or to users at subscribing institutions.

 
Existing subscribers:
Go to Inderscience Online Journals to access the Full Text of this article.

Pay per view:
If you are not a subscriber and you just want to read the full contents of this article, buy online access here.

Complimentary Subscribers, Editors or Members of the Editorial Board of the International Journal of Grid and Utility Computing (IJGUC):
Login with your Inderscience username and password:

    Username:        Password:         

Forgotten your password?


Want to subscribe?
A subscription gives you complete access to all articles in the current issue, as well as to all articles in the previous three years (where applicable). See our Orders page to subscribe.

If you still need assistance, please email subs@inderscience.com