Investigating the Privacy and Security of the SimpliSafe Security System on Android and iOS

The emergence of the Internet of Things technologies and the increase and convenience of smart home devices have contributed to the growth of self-installed home security systems. While home security devices have become more accessible and can help users monitor and secure their homes, they can also...

Full description

Bibliographic Details
Main Authors: Shinelle Hutchinson, Miloš Stanković, Samuel Ho, Shiva Houshmand, Umit Karabiyik
Format: Article
Language:English
Published: MDPI AG 2023-04-01
Series:Journal of Cybersecurity and Privacy
Subjects:
Online Access:https://www.mdpi.com/2624-800X/3/2/9
_version_ 1797594053967085568
author Shinelle Hutchinson
Miloš Stanković
Samuel Ho
Shiva Houshmand
Umit Karabiyik
author_facet Shinelle Hutchinson
Miloš Stanković
Samuel Ho
Shiva Houshmand
Umit Karabiyik
author_sort Shinelle Hutchinson
collection DOAJ
description The emergence of the Internet of Things technologies and the increase and convenience of smart home devices have contributed to the growth of self-installed home security systems. While home security devices have become more accessible and can help users monitor and secure their homes, they can also become targets of cyberattacks and/or witnesses of criminal activities, hence sources of forensic evidence. To date, there is little existing literature on forensic analysis and the security and privacy of home security systems. In this paper, we seek to better understand and assess the forensic artifacts that can be extracted, the security and privacy concerns around the use of home security devices, and the challenges forensic investigators might encounter, by performing a comprehensive investigation of the SimpliSafe security system. We investigated the interaction of the security system with the SimpliSafe companion app on both Android and iOS devices. We analyzed the network traffic as the user interacts with the system to identify any security or privacy concerns. Our method can help investigators working on other home security systems, and our findings can further help developers to improve the confidentiality and privacy of user data in home security devices and their applications.
first_indexed 2024-03-11T02:18:13Z
format Article
id doaj.art-464cd907fbfa4b488c5625f084dda701
institution Directory Open Access Journal
issn 2624-800X
language English
last_indexed 2024-03-11T02:18:13Z
publishDate 2023-04-01
publisher MDPI AG
record_format Article
series Journal of Cybersecurity and Privacy
spelling doaj.art-464cd907fbfa4b488c5625f084dda7012023-11-18T11:01:59ZengMDPI AGJournal of Cybersecurity and Privacy2624-800X2023-04-013214516510.3390/jcp3020009Investigating the Privacy and Security of the SimpliSafe Security System on Android and iOSShinelle Hutchinson0Miloš Stanković1Samuel Ho2Shiva Houshmand3Umit Karabiyik4Department of Computer and Information Technology, Purdue University, West Lafayette, IN 47907, USADepartment of Computer and Information Technology, Purdue University, West Lafayette, IN 47907, USADepartment of Computer and Information Technology, Purdue University, West Lafayette, IN 47907, USADepartment of Mathematics and Computer Science, Santa Clara University, Santa Clara, CA 95053, USADepartment of Computer and Information Technology, Purdue University, West Lafayette, IN 47907, USAThe emergence of the Internet of Things technologies and the increase and convenience of smart home devices have contributed to the growth of self-installed home security systems. While home security devices have become more accessible and can help users monitor and secure their homes, they can also become targets of cyberattacks and/or witnesses of criminal activities, hence sources of forensic evidence. To date, there is little existing literature on forensic analysis and the security and privacy of home security systems. In this paper, we seek to better understand and assess the forensic artifacts that can be extracted, the security and privacy concerns around the use of home security devices, and the challenges forensic investigators might encounter, by performing a comprehensive investigation of the SimpliSafe security system. We investigated the interaction of the security system with the SimpliSafe companion app on both Android and iOS devices. We analyzed the network traffic as the user interacts with the system to identify any security or privacy concerns. Our method can help investigators working on other home security systems, and our findings can further help developers to improve the confidentiality and privacy of user data in home security devices and their applications.https://www.mdpi.com/2624-800X/3/2/9Androiddigital forensicsiOSIoTmobile forensicsnetwork forensics
spellingShingle Shinelle Hutchinson
Miloš Stanković
Samuel Ho
Shiva Houshmand
Umit Karabiyik
Investigating the Privacy and Security of the SimpliSafe Security System on Android and iOS
Journal of Cybersecurity and Privacy
Android
digital forensics
iOS
IoT
mobile forensics
network forensics
title Investigating the Privacy and Security of the SimpliSafe Security System on Android and iOS
title_full Investigating the Privacy and Security of the SimpliSafe Security System on Android and iOS
title_fullStr Investigating the Privacy and Security of the SimpliSafe Security System on Android and iOS
title_full_unstemmed Investigating the Privacy and Security of the SimpliSafe Security System on Android and iOS
title_short Investigating the Privacy and Security of the SimpliSafe Security System on Android and iOS
title_sort investigating the privacy and security of the simplisafe security system on android and ios
topic Android
digital forensics
iOS
IoT
mobile forensics
network forensics
url https://www.mdpi.com/2624-800X/3/2/9
work_keys_str_mv AT shinellehutchinson investigatingtheprivacyandsecurityofthesimplisafesecuritysystemonandroidandios
AT milosstankovic investigatingtheprivacyandsecurityofthesimplisafesecuritysystemonandroidandios
AT samuelho investigatingtheprivacyandsecurityofthesimplisafesecuritysystemonandroidandios
AT shivahoushmand investigatingtheprivacyandsecurityofthesimplisafesecuritysystemonandroidandios
AT umitkarabiyik investigatingtheprivacyandsecurityofthesimplisafesecuritysystemonandroidandios