Cybersecurity Attacks on Software Logic and Error Handling Within AIS Implementations: A Systematic Testing of Resilience
نویسندگان
چکیده
To increase situational awareness of maritime vessels and other entities to enable their exchange various information, the International Maritime Organization mandated use Automatic Identification System (AIS) in 2004. The AIS is a self-reporting system that uses VHF radio link. However, any radio-based prone forgery, especially situations where authentication message not designed into architecture. As was 1990s when cyberattacks were infancy, it does implement or encryption; thus, can be seen as fundamentally vulnerable against cyberattacks. This paper demonstrates evaluates impact multiple on via remote frequency (RF) links using transmission-enabled software-defined (SDR). Overall, we implemented tested total 11 different tests/attacks 19 setups, controlled environment. configurations derived from heterogeneous platforms such Windows, Android, generic receivers, commercial transponders. Our aim enhance early discovery new vulnerabilities effectively address attacks nearest future. results showed approximately 89% setups affected by Denial-of-Service (DoS) at protocol level. Besides implementing some existing attack ideas (e.g., spoofing, DoS, flooding), novel concepts context coordinated attack, overwhelming alerts, logical vulnerabilities, all which have potential cause software/system crashes worst-case scenarios. Moreover, an implementation/specification flaw related preamble identified during experiments, may affect interoperability devices. error-handling also investigated. Unlike aviation sector’s Dependent Surveillance-Broadcast (ADS-B), support error correction method, contribute RF pollution less effective overall system. consistency our for comprehensive range hardware-software indicated reliability approach, test system, evaluation results.
منابع مشابه
A Framework for Testing AIS Implementations
Service availability has become one of the most crucial parameter of telecommunications infrastructure and other IT applications. Service Availability Forum (SAF) is a leading organization in publishing open specifications for Highly Available (HA) systems. Its Application Interface Specification (AIS) is a widely accepted standard for application developers. Conformance to the standard is one ...
متن کاملSecurity testing of session initiation protocol implementations
The mechanisms which enable the vast majority of computer attacks are based on design and programming errors in networked applications. The growing use of voice over IP (VOIP) phone technology makes these phone applications potential targets. We present a tool to perform security testing of VOIP applications to identify security vulnerabilities which can be exploited by an attacker. Session Ini...
متن کاملPractical Power Analysis Attacks on Software Implementations of McEliece
The McEliece public-key cryptosystem is based on the fact that decoding unknown linear binary codes is an NP-complete problem. The interest on implementing post-quantum cryptographic algorithms, e.g. McEliece, on microprocessor-based platforms has been extremely raised due to the increasing storage space of these platforms. Therefore, their vulnerability and robustness against physical attacks,...
متن کاملa new algorithm and software of individual life insurance and annuity computation
چکیده ندارد.
15 صفحه اولContagion in Cybersecurity Attacks
We develop and estimate a vector equation system of threats to ten important IP services, using SANS-reported data over the period January 2003 to February 2011. Our results reveal strong evidence of contagion between such attacks, with attacks on ssh and Secure Web Server indicating increased attack activity on other ports. Security managers who ignore such contagious inter-relationships may u...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
ژورنال
عنوان ژورنال: IEEE Access
سال: 2022
ISSN: ['2169-3536']
DOI: https://doi.org/10.1109/access.2022.3158943