IoT threat detection
- Project
- 20020 ENTA
- Type
- New service
- Description
This result has generated a tool that allows the discovery of IoT devices and the detection of IoT attacks in corporate networks in which encryption is used where other cybersecurity tools cannot offer good results. To achieve this result, we developed an ML model that can differentiate between IoT devices and non-IoT devices (computers, servers, consoles, etc.) and classify IoT traffic into good traffic and attack traffic offering real-time protection. and without the need to observe the traffic payload
- Contact
- Luis Redondo López, MTP
- lredondo@mtp.es
- Research area(s)
- IoT, cybersecurity, Artificial Inteligence
- Technical features
The main technical characteristics of the solution are:
Discovery of previously unidentified IoT devices on enterprise networks using encrypted communications Detection of cyber attacks carried out on encrypted networks from IoT devices Obtaining results in real time It is not necessary to decrypt the payload
- Integration constraints
To integrate this solution into the company's environment, it is necessary to have a Kubernetes cluster and install the ENTA tool. Furthermore, it is necessary that the ENTA tool can be accessed from outside the cluster in order to communicate with the models deployed in the cloud.
- Conditions for reuse
To reuse this software, you must hire the services of MTP to be able to install and adapt the tool to the environments and needs of each of the clients.
- Confidentiality
- Public
- Publication date
- 01-10-2023
- Involved partners
- Metodos y Tecnologia (ESP)