Test Data Generation for False Data Injection Attack Testing in Air Traffic Surveillance *Best Paper*
The ADS-B - Automatic Dependent Surveillance Broadcast - technology requires aircraft to broadcast their position and velocity periodically. The protocol was not specified with cyber security in minds and therefore provides no encryption nor identification. These issues, coupled with the reliance on aircraft to communicate on their status, expose air transport to new cyber security threats, and especially to FDIAs - False Data Injection Attacks - where an attacker modifies, blocks, or emits fake ADS-B messages to dupe controllers and surveillance systems. This paper is part of an ongoing research initiative toward FDIA test generation intended to improve the detection capabilities of surveillance systems. It focuses on the mechanisms used to alter existing legitimate ADS-B recordings as if an attacker had tempered with the communication flow. We propose a set of alteration algorithms covering the taxonomy of FDIA attacks for ADS-B previously defined in the literature. We experiment this approach by generating test data for an AI-based FDIA detection system [8]. Experimental results show that the proposed approach is straightforward to generate attack situations and provides a efficient way to easily generate sophisticated alterations that were not picked up by the detection system.
Sat 24 OctDisplayed time zone: Lisbon change
11:00 - 12:30 | Session IIITEQS 2020 at São João Chair(s): Eduard Paul Enoiu Mälardalen University ITEQS 2020 is held as a virtual workshop via Zoom. Contact iteqs2020@easychair.org for the details. | ||
11:00 30mFull-paper | Prioritizing Scenarios based on STAMP/STPA Using Statistical Model Checking ITEQS 2020 Mitsuaki Tsuji Nara Institute of Science and Technology, Toshinori Takai Nara Institute of Science and Technology, Kazuki Kakimoto Nara Institute of Science and Technology, Naoki Ishihama Japan Aerospace Exploration Agency, Masafumi Katahira Japan Aerospace Exploration Agency, Hajimu Iida Nara Institute of Science and Technology Link to publication DOI | ||
11:30 30mFull-paper | Generating Tests for the Discovery of Security Flaws in Product Variants ITEQS 2020 Francisco Araújo LASIGE, Faculdade de Ciências da Universidade de Lisboa, Ibéria Medeiros LaSIGE, Faculdade de Ciências da Universidade de Lisboa, Nuno Neves DI FC UL Link to publication DOI | ||
12:00 30mFull-paper | Test Data Generation for False Data Injection Attack Testing in Air Traffic Surveillance *Best Paper* ITEQS 2020 Aymeric Cretin Femto-ST Institute, Alexandre Vernotte Femto-ST Institute, Antoine Chevrot Femto-ST Institute, Fabien Peureux Institut FEMTO-ST (UMR CNRS 6174) and Smartesting S&S, Bruno Legeard FEMTO-ST / DISC Link to publication DOI |