can ferris bueller still have his day off? protecting privacy in the wireless era authors: ben...

22
Can Ferris Bueller Still Have His Day Off? Protecting Privacy in the Wireless Era Authors: Ben Greenstein, Ramakrishna Gummadi, Jeffrey Pang, Mike Y. Chen, Tadayoshi Kohno,Srinivasan Seshan, David Wetherall Presenter: Yinzhi Cao

Upload: beryl-dawson

Post on 14-Jan-2016

214 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: Can Ferris Bueller Still Have His Day Off? Protecting Privacy in the Wireless Era Authors: Ben Greenstein, Ramakrishna Gummadi, Jeffrey Pang, Mike Y. Chen,

Can Ferris Bueller Still Have His Day Off? Protecting Privacy in the

Wireless EraAuthors: Ben Greenstein, Ramakrishna Gummadi,

Jeffrey Pang,Mike Y. Chen, Tadayoshi Kohno,Srinivasan Seshan,

David WetherallPresenter: Yinzhi Cao

Page 2: Can Ferris Bueller Still Have His Day Off? Protecting Privacy in the Wireless Era Authors: Ben Greenstein, Ramakrishna Gummadi, Jeffrey Pang, Mike Y. Chen,

Introduction

• The advent of mobile devices and ubiquitous computing devices has really pushed security and privacy in this environment to the forefront and is fast developing as an important area of research.

• A device can be indentified and tracked over time through its persistent link-layer address, list of known networks(SSIDs), and other protocol and physical layer characteristics.

Page 3: Can Ferris Bueller Still Have His Day Off? Protecting Privacy in the Wireless Era Authors: Ben Greenstein, Ramakrishna Gummadi, Jeffrey Pang, Mike Y. Chen,

802.11 Case Study (1)

Page 4: Can Ferris Bueller Still Have His Day Off? Protecting Privacy in the Wireless Era Authors: Ben Greenstein, Ramakrishna Gummadi, Jeffrey Pang, Mike Y. Chen,

802.11 Case Study (1) CONT’D

Page 5: Can Ferris Bueller Still Have His Day Off? Protecting Privacy in the Wireless Era Authors: Ben Greenstein, Ramakrishna Gummadi, Jeffrey Pang, Mike Y. Chen,

802.11 Case Study (1) CONT’D

• ResultPeople may know that Ferris went to Park on

Tuesday while he says he is sick and should be at home.

Page 6: Can Ferris Bueller Still Have His Day Off? Protecting Privacy in the Wireless Era Authors: Ben Greenstein, Ramakrishna Gummadi, Jeffrey Pang, Mike Y. Chen,

802.11 Case Study(2)

Page 7: Can Ferris Bueller Still Have His Day Off? Protecting Privacy in the Wireless Era Authors: Ben Greenstein, Ramakrishna Gummadi, Jeffrey Pang, Mike Y. Chen,

802.11 Case Study(3)

Page 8: Can Ferris Bueller Still Have His Day Off? Protecting Privacy in the Wireless Era Authors: Ben Greenstein, Ramakrishna Gummadi, Jeffrey Pang, Mike Y. Chen,

802.11 Case Study(3)

• Sequence Number Field (the rate of package transmissions)

• Traffic Indication Map in beacon frames for clients using power-save functionality(count of power-save user number)

Page 9: Can Ferris Bueller Still Have His Day Off? Protecting Privacy in the Wireless Era Authors: Ben Greenstein, Ramakrishna Gummadi, Jeffrey Pang, Mike Y. Chen,

Research Challenge

• Naming• Discovering resources and binding• Limiting information leakage

Page 10: Can Ferris Bueller Still Have His Day Off? Protecting Privacy in the Wireless Era Authors: Ben Greenstein, Ramakrishna Gummadi, Jeffrey Pang, Mike Y. Chen,

Naming

• Unique MAC address Leakage• Solution:– Periodically Changing MAC addresses

(Pseudonym)– Hiding Persistent ID

• Problem– Pseudonyms can be linked together– Link 802.11 with bluetooth– Prevent Normal Users

Page 11: Can Ferris Bueller Still Have His Day Off? Protecting Privacy in the Wireless Era Authors: Ben Greenstein, Ramakrishna Gummadi, Jeffrey Pang, Mike Y. Chen,

Discovering resources and binding

• Designing Goal– Only clients who are authorized to use a private

service should be capable of learning of its presence.

– At most the client and the service involved should know when a binding is established or broken between them; optionally, the identity of the client may be hidden from the service as well.

Page 12: Can Ferris Bueller Still Have His Day Off? Protecting Privacy in the Wireless Era Authors: Ben Greenstein, Ramakrishna Gummadi, Jeffrey Pang, Mike Y. Chen,

Limiting information leakage

• We can’t encrypt all the frames.– some link header fields are designed to be

broadcast to all users. For example, the duration field.

– if a client were to encrypt the remaining fields so that only the AP could decrypt them, then the AP would suffer additional computation load, and would thus be more susceptible to denial-of-service attacks

Page 13: Can Ferris Bueller Still Have His Day Off? Protecting Privacy in the Wireless Era Authors: Ben Greenstein, Ramakrishna Gummadi, Jeffrey Pang, Mike Y. Chen,

Devices That Tell On You: Privacy Trends in Consumer Ubiquitous

ComputingAuthors: T. Scott Saponas, Jonathan

Lester, Carl Hartung, Sameer Agarwal,Tadayoshi Kohno

Presenter: Yinzhi Cao

Page 14: Can Ferris Bueller Still Have His Day Off? Protecting Privacy in the Wireless Era Authors: Ben Greenstein, Ramakrishna Gummadi, Jeffrey Pang, Mike Y. Chen,

The Sling Media Slingbox Pro

• Usage– allows users to remotely view (sling) the contents

of their TV over the Internet

• Vulnerability– Based on throughput, we can deduce which TV

program users are watching

Page 15: Can Ferris Bueller Still Have His Day Off? Protecting Privacy in the Wireless Era Authors: Ben Greenstein, Ramakrishna Gummadi, Jeffrey Pang, Mike Y. Chen,

The Sling Media Slingbox Pro

Page 16: Can Ferris Bueller Still Have His Day Off? Protecting Privacy in the Wireless Era Authors: Ben Greenstein, Ramakrishna Gummadi, Jeffrey Pang, Mike Y. Chen,

The Sling Media Slingbox Pro Cont’d

• Method

Page 17: Can Ferris Bueller Still Have His Day Off? Protecting Privacy in the Wireless Era Authors: Ben Greenstein, Ramakrishna Gummadi, Jeffrey Pang, Mike Y. Chen,

The Sling Media Slingbox Pro Cont’d

• Result

Page 18: Can Ferris Bueller Still Have His Day Off? Protecting Privacy in the Wireless Era Authors: Ben Greenstein, Ramakrishna Gummadi, Jeffrey Pang, Mike Y. Chen,

The Nike+iPod Sport Kit: Devices that Reveal Your Presence

• Usage– The Nike+iPod Sport Kit allows runners and

walkers to hear real time workout progress reports on their iPod Nanos.

Page 19: Can Ferris Bueller Still Have His Day Off? Protecting Privacy in the Wireless Era Authors: Ben Greenstein, Ramakrishna Gummadi, Jeffrey Pang, Mike Y. Chen,

The Nike+iPod Sport Kit: Devices that Reveal Your Presence Cont’d

• Vulnerability

Page 20: Can Ferris Bueller Still Have His Day Off? Protecting Privacy in the Wireless Era Authors: Ben Greenstein, Ramakrishna Gummadi, Jeffrey Pang, Mike Y. Chen,

Zunes: Challenges with Managing Ad Hoc Mobile Social Interactions

• Usage– portable media devices to include wireless

capability for the purpose of sharing media– Block Mechanism

Page 21: Can Ferris Bueller Still Have His Day Off? Protecting Privacy in the Wireless Era Authors: Ben Greenstein, Ramakrishna Gummadi, Jeffrey Pang, Mike Y. Chen,

Zunes: Challenges with Managing Ad Hoc Mobile Social Interactions

• Circumventing the Zune Blocking Mechanism– Disappearing attack Zune– Fake MAC addresses– Post-blocking privacy

Page 22: Can Ferris Bueller Still Have His Day Off? Protecting Privacy in the Wireless Era Authors: Ben Greenstein, Ramakrishna Gummadi, Jeffrey Pang, Mike Y. Chen,

Thank you