DEMO: Himiko: A human interface for monitoring and inferring knowledge on Bluetooth-Low-Energy objects - Inria - Institut national de recherche en sciences et technologies du numérique Accéder directement au contenu
Poster Année : 2019

DEMO: Himiko: A human interface for monitoring and inferring knowledge on Bluetooth-Low-Energy objects

Résumé

The Bluetooth Low Energy (BLE) protocol is being included in a growing number of connected objects such as smartphones, fitness trackers, headphones and smartwatches. As part of the service discovery mechanism of BLE, devices announce themselves by broadcasting radio signals called advertisement packets that can be collected with off-the-shelf hardware and software. To avoid the risk of tracking based on those messages, BLE features an address randomization mechanism that substitutes the device MAC address with random temporary pseudonyms. However, the payload of the advertisement packet still contains fields that can hamper the ran-domization mechanism by exposing counters and static identifiers. In addition to defeating the randomization mechanism, some of these fields can leak sensitive attributes of the owner such as his medical condition. As a consequence, we implemented Himiko to raise awareness about the privacy issues that the BLE advertising mechanism can involve. This tool aims to show the information that a passive eaves-dropper can infer by leveraging the contents of BLE advertisement packets. The advertising raw data are collected and processed from devices that have their Bluetooth interface enabled. The user is then shown the information that are leaking from his device.
Fichier principal
Vignette du fichier
himiko_WiSec_2019.pdf (658.47 Ko) Télécharger le fichier
Origine : Fichiers produits par l'(les) auteur(s)
Loading...

Dates et versions

hal-02154148 , version 1 (13-06-2019)

Identifiants

Citer

Guillaume Celosia, Mathieu Cunche. DEMO: Himiko: A human interface for monitoring and inferring knowledge on Bluetooth-Low-Energy objects. WiSec 2019 - 12th Conference on Security and Privacy in Wireless and Mobile Networks, May 2019, Miami, United States. ACM Press, pp.292-293, ⟨10.1145/3317549.3326297⟩. ⟨hal-02154148⟩
153 Consultations
308 Téléchargements

Altmetric

Partager

Gmail Facebook X LinkedIn More