Situation aware intrusion recovery policy in WSNs

Stavrou, Eliana orcid iconORCID: 0000-0003-4040-4942 and Pitsillides, A (2016) Situation aware intrusion recovery policy in WSNs. In: International Conference On Cyber Situational Awareness, Data Analytics And Assessment (CyberSA), 13-14 June 2016, UK.

[thumbnail of Version of Record]
Preview
PDF (Version of Record) - Published Version
Available under License Creative Commons Attribution Non-commercial No Derivatives.

472kB

Official URL: http://dx.doi.org/10.1109/CyberSA.2016.7503285

Abstract

Wireless Sensor Networks (WSNs) have been gaining tremendous research attention the last few years as they support a broad range of applications in the context of the Internet of Things. WSN-driven applications greatly depend on the sensors’ observations to support decision-making and respond accordingly to reported critical events. In case of compromisation, it is vital to recover compromised WSN services and continue to operate as expected. To achieve an effective restoration of compromised WSN services, sensors should be equipped with the logic to take recovery decisions and self-heal. Self-healing is challenging as sensors should be aware of a variety of aspects in order to take effective decisions and maximize the recovery benefits. So far situation awareness has not been actively investigated in an intrusion recovery context. This research work formulates situation aware intrusion recovery policy design guidelines in order to drive the design of new intrusion recovery solutions that are operated by an adaptable policy. An adaptable intrusion recovery policy is presented taking into consideration the proposed design guidelines. The evaluation results demonstrate that the proposed policy can address advanced attack strategies and aid the sensors to recover the network’s operation under different attack situations and intrusion recovery requirements.


Repository Staff Only: item control page