dr0wned - Cyber-Physical Attack with Additive Manufacturing
نویسندگان
چکیده
Additive Manufacturing (AM, or 3D printing) is an emerging manufacturing technology with far-reaching implications. AM is increasingly used to produce functional parts, including components for safety-critical systems. However, AM’s unique capabilities and dependence on computerization raise a concern that an AM generated part could be sabotaged by a cyber-physical attack. In this paper, we demonstrate the validity of this concern by presenting a novel attack: reducing the fatigue life of a functional part. We develop a sabotage attack against a specific 3D-printed quadcopter propeller, causing its mid-flight failure, ultimately leading to the quadcopter’s fall and destruction. The study described in this paper presents the very first full chain of attack against AM. We present all stages of the attack, beginning with a cyber-attack aimed at compromising a manufacturing environment and ending with the destruction of the target system that employs this part. Among major scientific contributions of this paper are a new category of a sabotage attack (accelerated fatigue), a novel systematic approach to identify options for such attack involving AM, and a demonstration of an empiric approach for the development and validation of an AM specific malicious manipulation. We further demonstrate how the proposed sabotage attack can be integrated in a worm, thus enabling a widescale attack targeting either specific or similar enough digital design files of functional parts.
منابع مشابه
Cyber-physical Vunerabilities in Additive Manufacturing Systems
One of the key advantages of additive manufacturing (AM) is its digital thread, which allows for rapid communication, iteration, and sharing of a design model and its corresponding physical representation. While this enables a more efficient design process, it also presents opportunities for cyber-attacks to impact the physical word. In this paper the authors examine potential attack vectors al...
متن کاملForensics of Thermal Side-Channel in Additive Manufacturing Systems
Additive manufacturing systems, such as 3D-printers, emit cyber-data via physical side-channels (such as acoustic, power, thermal, and electromagnetic emissions) while creating 3D objects. These emitted data can be used by attackers to their advantage for indirectly reconstructing the 3D objects being printed along with its corresponding cyber-data. Moreover, in our work, we demonstrate that th...
متن کاملInformation Leakage-Aware Computer Aided Cyber-Physical Manufacturing
Cyber-physical additive manufacturing systems consists of tight integration of cyber and physical domains. This union, however, induces new cross-domain vulnerabilities that pose unique security challenges. One of these challenges is preventing confidentiality breach, caused by physical-to-cyber domain attacks. In this form of attack, attackers utilize the sidechannels (such as acoustics, power...
متن کاملPoster: Exploiting Acoustic Side-Channel for Attack on Additive Manufacturing Systems
Confidentiality, Integrity and Availability (CIA) are the fundamental security requirements for Cyber-Physical Systems (CPS) such as additive manufacturing. However, unlike most security research on CPS, analysis of side-channel for detecting threat towards CIA of additive manufacturing is still at its early stage. In our work, we focus on analyzing the acoustic side-channel of Fused Deposition...
متن کاملAttacks on Confidentiality of Additive Manufacturing Systems using Acoustic Side-Channel
Acoustics emanated from the additive manufacturing systems, such as 3D-printers, carry process information that can be used to breach the confidentiality of the system. Moreover, this is an example of a physical-to-cyber domain attack, where information gathered from the physical domain, such as acoustic side-channel of a 3D-printer, can be used to reveal information about the cyber domain (suc...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید
ثبت ناماگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید
ورودعنوان ژورنال:
- CoRR
دوره abs/1609.00133 شماره
صفحات -
تاریخ انتشار 2017