INXU: A Flow-Based Intrusion Prevention System for Home IoT Networks

  • Sávyo V. Morais UFRJ
  • Claudio M. Farias UFRJ


Due to the low resources and maintainability in home Internet of Things (IoT) devices, they can represent a risk to end-user’s security and privacy. Several proposals tried to manage new vulnerabilities in this scenario, but it is difficult to keep signatures updated or identify anomalous traffic. To reinforce home IoT security, we propose INXU, a flow-based Intrusion Prevention System that protects home IoT devices by blocking traffic related to well known malicious activities. INXU introduces the concept of Malicious Traffic Description (MTD), a data-model to describe traffic related to malicious activities that enables Security Experts to protect home networks and keeps end-user’s privacy. Experiments using Mirai botnet have shown the efficacy of our solution.


