hh.sePublikationer
Ändra sökning
RefereraExporteraLänk till posten
Permanent länk

Direktlänk
Referera
Referensformat
  • apa
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Annat format
Fler format
Språk
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Annat språk
Fler språk
Utmatningsformat
  • html
  • text
  • asciidoc
  • rtf
Security testing of the Zigbee communication protocol in consumer grade IoT devices
Högskolan i Halmstad.
Högskolan i Halmstad.
2019 (Engelska)Självständigt arbete på avancerad nivå (magisterexamen), 10 poäng / 15 hpStudentuppsats (Examensarbete)
Abstract [en]

With the ever increasing number of Internet of Things devices going out on the market for consumers that are Zigbee certified there is a need for security testing. This is to make sure that security standards are upheld and improved upon in order to make sure networks are protected from unauthorized users. Even though a lot of research and testing has been done on the Zigbee key exchange mechanism, called Zigbee commissioning, improvements have still not been enough with severe vulnerabilities in consumer grade devices still existing today. The devices tested in this study use EZ-mode commissioning in order to exchange the network key between a Zigbee coordinator and a Zigbee end device in order to encrypt later communication after being paired.  By using a simple radio receiver and a packet capturing program such as Wireshark an eavesdropping attack was conducted in order to capture the network key. The experiment demonstrates that this is still a weak point as the network key was successfully captured using eavesdropping. The analysis of the results show that previous criticisms of Zigbee commissioning have still not fully been addressed and can be a potential weak point in networks that use Zigbee certified IoT products.  

Ort, förlag, år, upplaga, sidor
2019. , s. 54
Nyckelord [en]
Zigbee, Protocol, IoT, Key Exchange, Internet of Things, Eavesdropping
Nationell ämneskategori
Annan teknik
Identifikatorer
URN: urn:nbn:se:hh:diva-40189OAI: oai:DiVA.org:hh-40189DiVA, id: diva2:1335987
Utbildningsprogram
Magisterprogram i nätverksforensik
Handledare
Examinatorer
Tillgänglig från: 2019-07-15 Skapad: 2019-07-08 Senast uppdaterad: 2025-10-01Bibliografiskt granskad

Open Access i DiVA

fulltext(3354 kB)1771 nedladdningar
Filinformation
Filnamn FULLTEXT01.pdfFilstorlek 3354 kBChecksumma SHA-512
9ff7e4b313dfce7c650ffdd89b1641ad757bf2d2a6f4930f5e45d7ec5e0eacb2582ae6062259d57dede1e85dccc07d3a4f114659a96feb78f7ff834e63c2f8c9
Typ fulltextMimetyp application/pdf

Av organisationen
Högskolan i Halmstad
Annan teknik

Sök vidare utanför DiVA

GoogleGoogle Scholar
Totalt: 1772 nedladdningar
Antalet nedladdningar är summan av nedladdningar för alla fulltexter. Det kan inkludera t.ex tidigare versioner som nu inte längre är tillgängliga.

urn-nbn

Altmetricpoäng

urn-nbn
Totalt: 1522 träffar
RefereraExporteraLänk till posten
Permanent länk

Direktlänk
Referera
Referensformat
  • apa
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Annat format
Fler format
Språk
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Annat språk
Fler språk
Utmatningsformat
  • html
  • text
  • asciidoc
  • rtf