{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,10,12]],"date-time":"2025-10-12T04:04:05Z","timestamp":1760241845696,"version":"build-2065373602"},"reference-count":42,"publisher":"MDPI AG","issue":"10","license":[{"start":{"date-parts":[[2018,9,26]],"date-time":"2018-09-26T00:00:00Z","timestamp":1537920000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["Sensors"],"abstract":"<jats:p>With increasingly prevalent wireless sensors and devices, low power and lossy networks (LLNs) play an essential role in the realization of ubiquitous computing and communication infrastructure, which, in turn, leads to enhanced data accessibility and availability. A multicast protocol for LLNs (MPL), has been standardized to provide both efficient and reliable multicast communication. Due to the shared wireless medium, lack of tamper resistance, and inherent resource constraints, MPL-based LLNs are undoubtedly vulnerable to various Denial-of-Service (DoS) attacks. In this paper, we propose a heuristic-based detection scheme, called HED, against the suppression attack in MPL-based LLNs, where a malicious node multicasts a series of spoof data messages with continuous sequence numbers to prevent normal nodes from accepting valid data messages and cause them to delete cached data messages. In the HED, each node maintains an increment rate of the minimum sequence number in the Seed Set to detect the potential malicious node by comparing the recent increment of sequence numbers with the heuristically calculated increment threshold of sequence numbers. We evaluate the proposed scheme through extensive simulation experiments using OMNeT++ and compare its performance with original MPL with and without adversary, respectively. The simulation results show high detection rate and packet reception rate but low false detection rate, and indicate that the proposed scheme is a potentially viable approach against the suppression attack in MPL-based LLNs.<\/jats:p>","DOI":"10.3390\/s18103236","type":"journal-article","created":{"date-parts":[[2018,9,26]],"date-time":"2018-09-26T10:39:58Z","timestamp":1537958398000},"page":"3236","update-policy":"https:\/\/doi.org\/10.3390\/mdpi_crossmark_policy","source":"Crossref","is-referenced-by-count":15,"title":["Suppression Attack Against Multicast Protocol in Low Power and Lossy Networks: Analysis and Defenses"],"prefix":"10.3390","volume":"18","author":[{"given":"Cong","family":"Pu","sequence":"first","affiliation":[{"name":"Weisberg Division of Computer Science, Marshall University, Huntington, WV 25755, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Xitong","family":"Zhou","sequence":"additional","affiliation":[{"name":"MS Graduate of Computer Science, Marshall University, Huntington, WV 25755, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"1968","published-online":{"date-parts":[[2018,9,26]]},"reference":[{"key":"ref_1","doi-asserted-by":"crossref","first-page":"510","DOI":"10.1109\/JSAC.2016.2525418","article-title":"Internet of Things in the 5G Era: Enablers, Architecture, and Business Models","volume":"34","author":"Palattella","year":"2016","journal-title":"IEEE J. Sel. Areas Commun."},{"key":"ref_2","unstructured":"(2018, September 26). Gartner Says 8.4 Billion Connected \u201cThings\u201d Will Be in Use in 2017, Up 31 Percent From 2016. Available online: https:\/\/www.gartner.com\/en\/newsroom\/press-releases\/2017-02-07-gartner-says-8-billion-connected-things-will-be-in-use-in-2017-up-31-percent-from-2016."},{"key":"ref_3","doi-asserted-by":"crossref","first-page":"2347","DOI":"10.1109\/COMST.2015.2444095","article-title":"Internet of Things: A Survey on Enabling Technologies, Protocols, and Applications","volume":"17","author":"Guizani","year":"2015","journal-title":"IEEE Commun. Surv. Tutor."},{"key":"ref_4","unstructured":"Hui, J., and Kelsey, R. (2018, September 26). Multicast Protocol for Low-Power and Lossy Networks (MPL). Available online: https:\/\/www.rfc-editor.org\/info\/rfc7731."},{"key":"ref_5","doi-asserted-by":"crossref","first-page":"2502","DOI":"10.1109\/COMST.2017.2751617","article-title":"Challenging the IPv6 Routing Protocol for Low-Power and Lossy Networks (RPL): A Survey","volume":"19","author":"Kim","year":"2017","journal-title":"IEEE Commun. Surv. Tutor."},{"key":"ref_6","unstructured":"IEEE Standards Association (2011). 802.15.4-2011\u2014IEEE Standard for Local and Metropolitan Area Networks\u2014Part 15.4: Low-Rate Wireless Personal Area Networks (LR-WPANs), IEEE Standards Association."},{"key":"ref_7","unstructured":"(2018, September 26). Cisco Connected Grid Security for Field Area Network. Available online: https:\/\/www.cisco.com\/c\/dam\/en_us\/solutions\/industries\/docs\/energy\/C11-696279-00_cgs_fan_white_paper.pdf."},{"key":"ref_8","doi-asserted-by":"crossref","first-page":"3028","DOI":"10.1109\/ACCESS.2017.2676119","article-title":"Secure Signature-Based Authenticated Key Establishment Scheme for Future IoT Applications","volume":"5","author":"Challa","year":"2017","journal-title":"IEEE Access"},{"key":"ref_9","doi-asserted-by":"crossref","first-page":"144","DOI":"10.1109\/MCOM.2012.6384464","article-title":"Management of Resource Constrained Devices in the Internet of Things","volume":"50","author":"Sehgal","year":"2012","journal-title":"IEEE Commun. Mag."},{"key":"ref_10","doi-asserted-by":"crossref","unstructured":"Sehgal, A., Mayzaud, A., Badonnel, R., Chrisment, I., and Schnwlder, J. (2014, January 15\u201319). Addressing DODAG Inconsistency Attacks in RPL Networks. Proceedings of the Global Information Infrastructure and Networking Symposium (GIIS), Montreal, QC, Canada.","DOI":"10.1109\/GIIS.2014.6934253"},{"key":"ref_11","unstructured":"Tsao, T., Alexander, R., Dohler, M., Daza, V., Lozano, A., and Richardson, M. (2018, September 26). A Security Threat Analysis for the Routing Protocol for Low-Power and Lossy Networks (RPLs). Available online: https:\/\/www.rfc-editor.org\/info\/rfc7416."},{"key":"ref_12","doi-asserted-by":"crossref","first-page":"245","DOI":"10.1109\/SURV.2011.041110.00022","article-title":"Denial of Service Attacks in Wireless Networks: The Case of Jammers","volume":"13","author":"Pelechrinis","year":"2011","journal-title":"IEEE Commun. Surv. Tutor."},{"key":"ref_13","doi-asserted-by":"crossref","unstructured":"Pu, C., Zhou, X., and Lim, S. (2018, January 1\u20134). Mitigating Suppression Attack in Multicast Protocol for Low Power and Lossy Networks. Proceedings of the IEEE 43rd Conference on Local Computer NetworksLCN, Chicago, IL, USA.","DOI":"10.1109\/LCN.2018.8638238"},{"key":"ref_14","unstructured":"Varga, A. (2018, March 15). OMNeT++. Available online: http:\/\/www.omnetpp.org\/."},{"key":"ref_15","doi-asserted-by":"crossref","unstructured":"Pu, C., and Lim, S. (2015, January 26\u201328). Spy vs. Spy: Camouflage-based Active Detection in Energy Harvesting Motivated Networks. Proceedings of the IEEE Military Communications Conference (MILCOM), Tampa, FL, USA.","DOI":"10.1109\/MILCOM.2015.7357560"},{"key":"ref_16","doi-asserted-by":"crossref","first-page":"17","DOI":"10.1016\/j.comcom.2018.04.007","article-title":"EYES: Mitigating Forwarding Misbehavior in Energy Harvesting Motivated Networks","volume":"124","author":"Pu","year":"2018","journal-title":"Elsevier Comput. Commun."},{"key":"ref_17","doi-asserted-by":"crossref","unstructured":"Pu, C., Lim, S., Byungkwan, J., and Manki, M. (2017, January 23\u201325). Mitigating Stealthy Collision Attack in Energy Harvesting Motivated Networks. Proceedings of the IEEE Military Communications Conference (MILCOM), Baltimore, MD, USA.","DOI":"10.1109\/MILCOM.2017.8170779"},{"key":"ref_18","doi-asserted-by":"crossref","first-page":"834","DOI":"10.1109\/JSYST.2016.2535730","article-title":"A Light-Weight Countermeasure to Forwarding Misbehavior in Wireless Sensor Networks: Design, Analysis, and Evaluation","volume":"12","author":"Pu","year":"2016","journal-title":"IEEE Syst. J."},{"key":"ref_19","doi-asserted-by":"crossref","unstructured":"Cui, B., and Yang, S. (2014, January 29\u201331). NRE: Suppress Selective Forwarding Attacks in Wireless Sensor Networks. Proceedings of the IEEE Conference on Communications and Network Security, San Francisco, CA, USA.","DOI":"10.1109\/CNS.2014.6997490"},{"key":"ref_20","doi-asserted-by":"crossref","unstructured":"Pu, C., Lim, S., Jinseok, C., and Byungkwan, J. (2017). Active Detection in Mitigating Routing Misbehavior for MANETs. Wirel. Netw.","DOI":"10.1007\/s11276-017-1621-z"},{"key":"ref_21","doi-asserted-by":"crossref","first-page":"4","DOI":"10.1109\/TC.2013.177","article-title":"A Novel En-Route Filtering Scheme Against False Data Injection Attacks in Cyber-Physical Networked Systems","volume":"64","author":"Yang","year":"2015","journal-title":"IEEE Trans. Comput."},{"key":"ref_22","doi-asserted-by":"crossref","first-page":"1727","DOI":"10.1109\/JPROC.2016.2558521","article-title":"A Survey on Wireless Security: Technical Challenges, Recent Advances, and Future Trends","volume":"104","author":"Zou","year":"2016","journal-title":"Proc. IEEE"},{"key":"ref_23","doi-asserted-by":"crossref","unstructured":"Dvir, A., Holczer, T., and Buttyan, L. (2011, January 17\u201322). VeRA-Version Number and Rank Authentication in RPL. Proceedings of the IEEE Eighth International Conference on Mobile Ad-Hoc and Sensor Systems, Valencia, Spain.","DOI":"10.1109\/MASS.2011.76"},{"key":"ref_24","unstructured":"Winter, T., and Thubert, P. (2018, September 26). RPL: IPv6 Routing Protocol for Low-Power and Lossy Networks. Available online: https:\/\/www.rfc-editor.org\/info\/rfc6550."},{"key":"ref_25","doi-asserted-by":"crossref","first-page":"3685","DOI":"10.1109\/JSEN.2013.2266399","article-title":"The Impact of Rank Attack on Network Topology of Routing Protocol for Low-Power and Lossy Networks","volume":"11","author":"Le","year":"2013","journal-title":"IEEE Sens. J."},{"key":"ref_26","doi-asserted-by":"crossref","unstructured":"Heo, J., Kim, J., Bahk, S., and Paek, J. (2017, January 12\u201314). Dodge-Jam: Anti-Jamming Technique for Low-Power and Lossy Wireless Networks. Proceedings of the 14th Annual IEEE International Conference on Sensing, Communication, and Networking (SECON), San Diego, CA, USA.","DOI":"10.1109\/SAHCN.2017.7964926"},{"key":"ref_27","doi-asserted-by":"crossref","first-page":"2524","DOI":"10.1109\/LCOMM.2017.2738629","article-title":"DIO Suppression Attack Against Routing in the Internet of Things","volume":"21","author":"Perazzo","year":"2017","journal-title":"IEEE Commun. Lett."},{"key":"ref_28","doi-asserted-by":"crossref","unstructured":"Pu, C., and Hajjar, S. (2018, January 12\u201315). Mitigating Forwarding Misbehaviors in RPL-based Low Power and Lossy Networks. Proceedings of the 15th IEEE Annual Consumer Communications & Networking Conference (CCNC), Las Vegas, NV, USA.","DOI":"10.1109\/CCNC.2018.8319164"},{"key":"ref_29","doi-asserted-by":"crossref","unstructured":"Pu, C. (2018, January 8\u201310). Mitigating DAO Inconsistency Attack in RPL-based Low Power and Lossy Networks. Proceedings of the IEEE 8th Annual Computing and Communication Workshop and Conference (CCWC), Las Vegas, NV, USA.","DOI":"10.1109\/CCWC.2018.8301614"},{"key":"ref_30","doi-asserted-by":"crossref","unstructured":"Pu, C., and Song, T. (2018, January 22\u201324). Hatchetman Attack: A Denial of Service Attack Against Routing in Low Power and Lossy Networks. Proceedings of the 5th IEEE International Conference on Cyber Security and Cloud Computing (CSCloud)\/2018 4th IEEE International Conference on Edge Computing and Scalable Cloud (EdgeCom), Shanghai, China.","DOI":"10.1109\/CSCloud\/EdgeCom.2018.00012"},{"key":"ref_31","doi-asserted-by":"crossref","first-page":"2661","DOI":"10.1016\/j.adhoc.2013.04.014","article-title":"SVELTE: Real-time intrusion detection in the Internet of Things","volume":"11","author":"Raza","year":"2013","journal-title":"Ad Hoc Netw."},{"key":"ref_32","doi-asserted-by":"crossref","unstructured":"Beigi-Mohammadi, N., Misic, J., Khazaei, H., and Misic, V.B. (2014, January 10\u201314). An Intrusion Detection System for Smart Grid Neighborhood Area Network. Proceedings of the IEEE International Conference on Communications (ICC), Sydney, NSW, Australia.","DOI":"10.1109\/ICC.2014.6883967"},{"key":"ref_33","doi-asserted-by":"crossref","unstructured":"Hummen, R., Hiller, J., Wirtz, H., Henze, M., Shafagh, H., and Wehrle, K. (2013, January 17\u201319). 6LoWPAN Fragmentation Attacks and Mitigation Mechanisms. Proceedings of the Sixth ACM Conference on Security and Privacy in Wireless and Mobile Networks, Budapest, Hungary.","DOI":"10.1145\/2462096.2462107"},{"key":"ref_34","unstructured":"Sajjad, S.M., and Yousaf, M. (, January June). Security analysis of IEEE 802.15. 4 MAC in the context of Internet of Things (IoT). Proceedings of the Conference on Information Assurance and Cyber Security (CIACS), Rawalpindi, Pakistan."},{"key":"ref_35","doi-asserted-by":"crossref","unstructured":"Kasinathan, P., Pastrone, C., Spirito, M.A., and Vinkovits, M. (2013, January 7\u20139). Denial-of-Service detection in 6LoWPAN based Internet of Things. Proceedings of the IEEE 9th International Conference on Wireless and Mobile Computing, Networking and Communications (WiMob), Lyon, France.","DOI":"10.1109\/WiMOB.2013.6673419"},{"key":"ref_36","doi-asserted-by":"crossref","first-page":"143","DOI":"10.14419\/jacst.v3i2.3321","article-title":"Denial-of-Service attacks on 6LoWPAN-RPL networks: Threats and an intrusion detection system proposition","volume":"3","author":"Rghioui","year":"2014","journal-title":"J. Adv. Comput. Sci. Technol."},{"key":"ref_37","unstructured":"Levis, P., and Clausen, T. (2018, September 26). The Trickle Algorithm. Available online: https:\/\/www.rfc-editor.org\/info\/rfc6206."},{"key":"ref_38","doi-asserted-by":"crossref","first-page":"557","DOI":"10.1109\/TIFS.2016.2613841","article-title":"On Resilience and Connectivity of Secure Wireless Sensor Networks Under Node Capture Attacks","volume":"12","author":"Zhao","year":"2017","journal-title":"IEEE Trans. Inf. Forensics Secur."},{"key":"ref_39","doi-asserted-by":"crossref","unstructured":"Abdallah, A., and Shen, X. (2016, January 22\u201327). Efficient Prevention Technique for False Data Injection Attack in Smart Grid. Proceedings of the IEEE International Conference on Communications (ICC), Kuala Lumpur, Malaysia.","DOI":"10.1109\/ICC.2016.7510610"},{"key":"ref_40","unstructured":"Boulis, A. (2018, February 15). Castalia. Available online: http:\/\/castalia.forge.nicta.com.au."},{"key":"ref_41","doi-asserted-by":"crossref","unstructured":"Marti, S., Giuli, T.J., Lai, K., and Baker, M. (2000, January 6\u201311). Mitigating routing misbehavior in mobile ad hoc networks. Proceedings of the 6th Annual International Conference on Mobile Computing and Networking, Boston, MA, USA.","DOI":"10.1145\/345910.345955"},{"key":"ref_42","doi-asserted-by":"crossref","first-page":"1661","DOI":"10.1109\/TWC.2010.05.090700","article-title":"Mitigating Selective Forwarding Attacks with a Channel-Aware Approach in WMNs","volume":"9","author":"Shila","year":"2010","journal-title":"IEEE Trans. on Wirel. Commun."}],"container-title":["Sensors"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/www.mdpi.com\/1424-8220\/18\/10\/3236\/pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,10,11]],"date-time":"2025-10-11T15:22:33Z","timestamp":1760196153000},"score":1,"resource":{"primary":{"URL":"https:\/\/www.mdpi.com\/1424-8220\/18\/10\/3236"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2018,9,26]]},"references-count":42,"journal-issue":{"issue":"10","published-online":{"date-parts":[[2018,10]]}},"alternative-id":["s18103236"],"URL":"https:\/\/doi.org\/10.3390\/s18103236","relation":{},"ISSN":["1424-8220"],"issn-type":[{"type":"electronic","value":"1424-8220"}],"subject":[],"published":{"date-parts":[[2018,9,26]]}}}