
The reseachers can monitor an entire system, such as a server, with simple radio antennas (pink).
Credit: Michael Schwettmann
Up to now, protecting hardware against manipulation has been a laborious business: expensive, and only possible on a small scale. And yet, two simple antennas might do the trick.
As far as data security is concerned, there is an even greater danger than remote cyberattacks: namely tampering with hardware that can be used to read out information – such as credit card data from a card reader. Researchers in Bochum have developed a new method to detect such manipulations. They monitor the systems with radio waves that react to the slightest changes in the ambient conditions. Unlike conventional methods, they can thus protect entire systems, not just individual components – and they can do it at a lower cost. The RUB’s science magazine Rubin features a report by the team from Ruhr-Universität Bochum (RUB), the Max Planck Institute for Security and Privacy and the IT company PHYSEC.
Paul Staat and Johannes Tobisch presented their findings at the IEEE Symposium on Security and Privacy, which took place in the USA from 23 to 25 May 2022. Both researchers are doing their PhDs at RUB and conducting research at the Max Planck Institute for Security and Privacy in Bochum in Professor Christof Paar’s team. For their research, they are cooperating with Dr. Christian Zenger from the RUB spin-off company PHYSEC.
Protection through radio waves
Data is ultimately nothing more than electrical currents that travel between different computer components via conductive paths. A tiny metallic object, located in the right place on the hardware, can be enough to tap into the information streams. To date, only individual components of systems, such as a crucial memory element or a processor, can be protected from such manipulations. “Typically, this is done with a type of foil with thin wires in which the hardware component is wrapped,” explains Paul Staat. “If the foil is damaged, an alarm is triggered.”
The radio wave technology from Bochum, however, can be used to monitor an entire system. To this end, the researchers install two antennas in the system: a transmitter and a receiver. The transmitter sends out a special radio signal that spreads everywhere in the system and is reflected by the walls and computer components. All these reflections cause a signal to reach the receiver that is as characteristic of the system as a fingerprint.
Technology reacts to the slightest changes
Tiny changes to the system are enough to have a noticeable effect on the fingerprint, as the team demonstrated in experiments. The IT experts equipped a conventional computer with radio antennas and punctured its housing with holes at regular intervals. Through these holes, the researchers let a fine metal needle penetrate the inside of the system and checked whether they notice the change in the radio signal. In the process, they varied the thickness of the needle, the position and the depth of penetration.
With the computer running, they reliably detected the penetration of a needle 0.3 millimetres thick with their system from a penetration depth of one centimetre. The system still detected a needle that was only 0.1 millimetres thick – about as thick as a hair – but not in all positions. “The closer the needle is to the receiving antenna, the easier it is to detect, explains Staat. “Therefore, in practical applications, it makes sense to think carefully about where you place the antennas,” adds Tobisch. “They should be as close as possible to the components that require a high degree of protection.”
Basically, the technology is suitable for both high-security applications and everyday problem. The IT company PHYSEC already uses it to prevent unauthorised manipulation of critical infrastructure components.
Original Article: Radio waves for the detection of hardware tampering
More from: Ruhr University Bochum | Max Planck Institute for Security and Privacy
The Latest on: Radio wave hardware security
- Global Software Defined Radio (SDR) Market to Reach US$33.2 Billion by the Year 2026on July 1, 2022 at 10:01 am
Market to Reach US$33.2 Billion by the Year 2026 SDR represents a type of sophisticated radio communication that relies on software on personal computer or embedded systems rather than hardware ...
- Wireless Security In The Enterprise: Deploying WPA2-Enterpriseon June 27, 2022 at 5:01 pm
Today’s IT teams spend countless hours keeping wireless enterprise networks safe from the perils that permeate the radio waves. Passive eavesdroppers can gather proprietary information, logins, and ...
- HP Wolf Security Survey Reveals IT Leader Concern Over Firmware Attackson June 27, 2022 at 5:00 pm
HP Inc. has released research from HP Wolf Security showing changing workforce dynamics are creating new challenges for IT teams around firmware security. As business workforces become increasingly ...
- Li-Fi’s latest champion: Ciscoon June 27, 2022 at 10:47 am
Today, virtually all non-wired internet connections — including cellular networks — rely on the same radio frequencies we’ve been using since the 1890s,” Cisco principal engineer John Parello wrote ...
- Chut, J'ecoute: US Army's Use of Radio Intelligence in World War Ion June 27, 2022 at 5:26 am
They inspected the physical condition of the lines but also conducted communications security ... with undamped wave transmitted sets were able to send in bearing by radio direct to G-2." ...
- Best USB microphones for streaming: Upgrade your stream with high-quality audioon June 23, 2022 at 8:30 pm
The Wave:3 also comes with built-in hardware to reduce unwanted vocal pops ... microphone used for decades by vocalists and countless radio shows. But while still aimed at a more experienced ...
- Hacking The Aether: How Data Crosses The Air-Gapon June 20, 2022 at 5:00 pm
These IT security policies and practices ... that can make a computer emit radio waves even if the device doesn’t include any radio transmission hardware. In 2015, Mordechai Guri, Assaf Kachlon ...
- The Best Home Security Systemon June 18, 2022 at 11:32 pm
While some companies provide free or heavily discounted hardware ... Security Kit. It is compatible with sensors and accessories that communicate wirelessly using Z-Wave, Zigbee, and AbodeRF ...
- Radio waves for the detection of hardware tamperingon June 7, 2022 at 5:01 pm
Up to now, protecting hardware against manipulation has been a laborious business: expensive, and only possible on a small scale. And yet, two simple antennas might do the trick. As far as data ...
- Radio waves for the detection of hardware tamperingon June 7, 2022 at 5:56 am
As far as data security is ... wires in which the hardware component is wrapped,” explains Paul Staat. “If the foil is damaged, an alarm is triggered.” The radio wave technology from Bochum ...
via Bing News
The Latest on: Radio wave hardware security
via Google News
Add Comment