Location via proxy:   [ UP ]  
[Report a bug]   [Manage cookies]                
Skip to main content

Investigating the Privacy Risk of Using Robot Vacuum Cleaners in Smart Environments

  • Conference paper
  • First Online:
Information and Communications Security (ICICS 2024)

Abstract

Robot vacuum cleaners have become increasingly popular and are widely used in various smart environments. To improve user convenience, manufacturers also introduced smartphone applications that enable users to customize cleaning settings or access information about their robot vacuum cleaners. While this integration enhances the interaction between users and their robot vacuum cleaners, it results in potential privacy concerns because users’ personal information may be exposed. To address these concerns, end-to-end encryption is implemented between the application, cloud service, and robot vacuum cleaners to secure the exchanged information. Nevertheless, network header metadata remains unencrypted and it is still vulnerable to network eavesdropping. In this paper, we investigate the potential risk of private information exposure through such metadata. A popular robot vacuum cleaner was deployed in a real smart environment where passive network eavesdropping was conducted during several selected cleaning events. Our extensive analysis, based on Association Rule Learning, demonstrates that it is feasible to identify certain events using only the captured Internet traffic metadata, thereby potentially exposing private user information and raising privacy concerns.

This is a preview of subscription content, log in via an institution to check access.

Access this chapter

Subscribe and save

Springer+ Basic
$34.99 /Month
  • Get 10 units per month
  • Download Article/Chapter or eBook
  • 1 Unit = 1 Article or 1 Chapter
  • Cancel anytime
Subscribe now

Buy Now

Chapter
USD 29.95
Price excludes VAT (USA)
  • Available as PDF
  • Read on any device
  • Instant download
  • Own it forever
eBook
USD 59.99
Price excludes VAT (USA)
  • Available as EPUB and PDF
  • Read on any device
  • Instant download
  • Own it forever
Softcover Book
USD 74.99
Price excludes VAT (USA)
  • Compact, lightweight edition
  • Dispatched in 3 to 5 business days
  • Free shipping worldwide - see info

Tax calculation will be finalised at checkout

Purchases are for personal use only

Institutional subscriptions

References

  1. Customer reviews on iRobot Roomba i7. https://www.amazon.com/iRobot-Roomba-7150-Wi-Fi-Connected/product-reviews/B07GNRGDKP. Accessed 31 Jul 2024

  2. Wireshark. https://www.wireshark.org/. Accessed 31 Jul 2024

  3. Acar, A., et al.: Peek-a-boo: i see your smart home activities, even encrypted! In: Proceedings of the 13th ACM Conference on Security and Privacy in Wireless and Mobile Networks, pp. 207–218 (2020)

    Google Scholar 

  4. Agrawal, R., Imieliński, T., Swami, A.: Mining association rules between sets of items in large databases. In: Proceedings of the 1993 ACM SIGMOD International Conference on Management of Data, pp. 207–216 (1993)

    Google Scholar 

  5. Alferidah, D.K., Jhanjhi, N.: A review on security and privacy issues and challenges in internet of things. Int. J. Comput. Sci. Netw. Secur. IJCSNS 20(4), 263–286 (2020)

    Google Scholar 

  6. Alyami, M., Alharbi, I., Zou, C., Solihin, Y., Ackerman, K.: WiFi-based IoT devices profiling attack based on eavesdropping of encrypted WiFi traffic. In: 2022 IEEE 19th Annual Consumer Communications & Networking Conference (CCNC), pp. 385–392. IEEE (2022)

    Google Scholar 

  7. Beale, J., Orebaugh, A., Ramirez, G.: Wireshark & Ethereal network protocol analyzer toolkit. Elsevier (2006)

    Google Scholar 

  8. BESTBUY: Customer Ratings & Reviews on iRobot Roomba i7 (2024). https://www.bestbuy.com/site/reviews/irobot-roomba-i7-wi-fi-connected-robot-vacuum-charcoal/6280530. Accessed 31 Jul 2024

  9. Dachyar, M., Zagloel, T.Y.M., Saragih, L.R.: Knowledge growth and development: Internet of Things (IoT) research, 2006–2018. Heliyon 5(8) (2019)

    Google Scholar 

  10. Dahlberg Sundström, T., Nilsson, J.: Ethical hacking of a premium robot vacuum: Penetration testing of the Roborock S7 robot vacuum cleaner (2022)

    Google Scholar 

  11. Goods, C.: Robotic vacuum cleaner market size, share & trends analysis report by type (floor vacuum cleaner, pool vacuum cleaner), by application (residential, commercial, industrial), by distribution channel, by region, and segment forecasts, 2022 - 2030 (2021). https://www.grandviewresearch.com/industry-analysis/robotic-vacuum-cleaner-market. Accessed 31 Jul 2024

  12. Gu, T., Fang, Z., Abhishek, A., Mohapatra, P.: IoTSpy: uncovering human privacy leakage in IoT networks via mining wireless context. In: 2020 IEEE 31st Annual International Symposium on Personal, Indoor and Mobile Radio Communications, pp. 1–7. IEEE (2020)

    Google Scholar 

  13. Hancock, S.A.: The iRobot Roomba i7 is the latest iteration in the always dependable roomba line. find out what makes it such an indispensable addition to your arsenal of labor-saving devices in our 2023 review! (2023). https://cleanup.expert/irobot-roomba-i7/. Accessed 31 Jul 2024

  14. Lee, M.C., Lin, J.C., Owe, O.: PDS: deduce elder privacy from smart homes. Internet Things 7, 100072 (2019)

    Article  Google Scholar 

  15. Ludlow, D.: iRobot Roomba i7 reviews (2021). https://www.trustedreviews.com/reviews/irobot-roomba-i7. Accessed 31 Jul 2024

  16. Rescorla, E.: The transport layer security (TLS) protocol version 1.3. Tech. rep. (2018)

    Google Scholar 

  17. Sami, S., Dai, Y., Tan, S.R.X., Roy, N., Han, J.: Spying with your robot vacuum cleaner: eavesdropping via lidar sensors. In: Proceedings of the 18th Conference on Embedded Networked Sensor Systems, pp. 354–367 (2020)

    Google Scholar 

  18. Swessi, D., Idoudi, H.: A survey on Internet-of-Things security: threats and emerging countermeasures. Wireless Pers. Commun. 124(2), 1557–1592 (2022)

    Article  Google Scholar 

  19. Ullrich, F., Classen, J., Eger, J., Hollick, M.: Vacuums in the cloud: analyzing security in a hardened IoT ecosystem. In: 13th USENIX Workshop on Offensive Technologies (WOOT 19) (2019)

    Google Scholar 

Download references

Acknowledgments

The authors want to thank the anonymous reviewers for their reviews and valuable suggestions to this paper. This work has received funding from the Research Council of Norway through the SFI Norwegian Centre for Cybersecurity in Critical Sectors (NORCICS) project no. 310105.

Author information

Authors and Affiliations

Authors

Corresponding author

Correspondence to Ming-Chang Lee .

Editor information

Editors and Affiliations

Rights and permissions

Reprints and permissions

Copyright information

© 2025 The Author(s), under exclusive license to Springer Nature Singapore Pte Ltd.

About this paper

Check for updates. Verify currency and authenticity via CrossMark

Cite this paper

Ulsmåg, B., Lin, JC., Lee, MC. (2025). Investigating the Privacy Risk of Using Robot Vacuum Cleaners in Smart Environments. In: Katsikas, S., Xenakis, C., Kalloniatis, C., Lambrinoudakis, C. (eds) Information and Communications Security. ICICS 2024. Lecture Notes in Computer Science, vol 15056. Springer, Singapore. https://doi.org/10.1007/978-981-97-8798-2_16

Download citation

  • DOI: https://doi.org/10.1007/978-981-97-8798-2_16

  • Published:

  • Publisher Name: Springer, Singapore

  • Print ISBN: 978-981-97-8797-5

  • Online ISBN: 978-981-97-8798-2

  • eBook Packages: Computer ScienceComputer Science (R0)

Publish with us

Policies and ethics