• DocumentCode
    2923989
  • Title

    Detecting Security Threats in Wireless LANs Using Timing and Behavioral Anomalies

  • Author

    Sithirasenan, Elankayer ; Muthukkumarasamy, Vallipuram

  • Author_Institution
    Griffith Univ., Gold Coast
  • fYear
    2007
  • fDate
    19-21 Nov. 2007
  • Firstpage
    66
  • Lastpage
    71
  • Abstract
    With the increasing dependence on wireless LANs (WLANs), businesses and educational institutions are in need of a reliable security mechanism. The latest security protocol, the IEEE 802.11i assures rigid security for WLANs with the support of IEEE 802.1x protocol for authentication, authorization and key distribution. Nevertheless, fresh security threats are emerging often to oust these new defense mechanisms. Further, many organizations based on superficial vendor literature, believe their wireless security is sufficient enough to prevent any unauthorized access. Having wide ranging options for security configurations, users are camouflaged into deep uncertainty. This volatile state of affairs has prevented many organizations from fully deploying WLANs for their secure communication needs, though WLANs may be cost effective and flexible. In this paper, we present an anomaly based mechanism to detect both known and emerging security threats in WLANs. Our method uses both timing and behavioral anomalies. We first look for timing and/or behavior anomalies during the security association process and then use outlier based data association approaches to verify their legitimacy. The proposed concept was tested on our experimental setup and the results obtained from EAP-LEAP and EAP-PEAP authenticated hosts are presented here.
  • Keywords
    authorisation; message authentication; protocols; sensor fusion; telecommunication security; wireless LAN; IEEE 802.11i security protocol; data association; key distribution; message authentication; security threat detection; timing-behavioral anomaly analysis; unauthorized access prevention; wireless LAN; wireless security; Access protocols; Authentication; Authorization; Communication system security; Costs; Data security; Educational institutions; Timing; Uncertainty; Wireless LAN;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Networks, 2007. ICON 2007. 15th IEEE International Conference on
  • Conference_Location
    Adelaide, SA
  • ISSN
    1556-6463
  • Print_ISBN
    978-1-4244-1230-3
  • Electronic_ISBN
    1556-6463
  • Type

    conf

  • DOI
    10.1109/ICON.2007.4444063
  • Filename
    4444063