Forensic-Aware Deception Framework for Cellular IoT (CIoT) Security: Bridging Proactive Defense and Digital Forensics
Description
This paper introduces a Forensic-Aware Deception Framework (FADF) that unifies IoT forensics principles with deception-based cybersecurity techniques to proactively detect, monitor, and legally preserve evidence of malicious activities in CIoT networks. The framework incorporates adaptive honeypots, honey tokens, AI-driven attack pattern analysis, and Blockchain-based evidence logging to ensure forensic soundness and legal admissibility. Unlike conventional CIoT defenses, which focus on either prevention or post-incident investigation, FADF integrates both into a continuous, proactive security cycle.
Files
Steps to reproduce
The paper reviews existing research in CIoT forensics and deception, highlights the unique forensic and legal challenges in cellular IoT environments, and presents a synthetic traffic-based simulation evaluating detection speed, evidence completeness, and attribution accuracy.
Institutions
- North South University