AirMask: Enabling Air-to-Air Masking of Wireless Traffic Fingerprints in WiFi-Based IoT Environments
Summary
Recent attacks on IoT (Internet of Things) devices can analyze side-channel behavioral fingerprints (patterns in wireless communication that reveal what users are doing) to infer private user behaviors over WiFi networks. The paper presents AirMask, a defense system that works at the network level rather than on individual devices, passively sensing these fingerprints and injecting carefully crafted wireless frames to mask them without requiring changes to IoT device firmware or hardware.
Solution / Mitigation
AirMask operates in a predict-inject-assess loop that iteratively adapts to changing traffic patterns, proactively injects principally crafted frames upon prediction of occurring fingerprints, and continuously refines device-specific obfuscation strategies. The system can be deployed in Integrated, TAP, and Air modes for flexible deployment within WiFi networks. According to the paper, AirMask has been implemented as a functional hardware prototype and evaluated on 90 types of IoT devices, confirming defensive effectiveness while incurring negligible bandwidth and latency overhead.
Classification
Original source: http://ieeexplore.ieee.org/document/11613098
First tracked: September 8, 2026 at 08:03 PM
Classified by LLM (prompt v3) · confidence: 95%