Contact Tracing Made Un-relay-able

10/23/2020
by   Marco Casagrande, et al.
0

Automated contact tracing is a key solution to control the spread of airborne transmittable diseases: it traces contacts among individuals in order to alert people about their potential risk of being infected. The current SARS-CoV-2 pandemic put a heavy strain on the healthcare system of many countries. Governments chose different approaches to face the spread of the virus and the contact tracing apps were considered the most effective ones. In particular, by leveraging on the Bluetooth Low-Energy technology, mobile apps allow to achieve a privacy-preserving contact tracing of citizens. While researchers proposed several contact tracing approaches, each government developed its own national contact tracing app. In this paper, we demonstrate that many popular contact tracing apps (e.g., the ones promoted by the Italian, French, Swiss government) are vulnerable to relay attacks. Through such attacks people might get misleadingly diagnosed as positive to SARS-CoV-2, thus being enforced to quarantine and eventually leading to a breakdown of the healthcare system. To tackle this vulnerability, we propose a novel and lightweight solution that prevents relay attacks, while providing the same privacy-preserving features as the current approaches. To evaluate the feasibility of both the relay attack and our novel defence mechanism, we developed a proof of concept against the Italian contact tracing app (i.e., Immuni). The design of our defence allows it to be integrated into any contact tracing app.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
06/08/2020

Contact Tracing: Beyond the Apps

As pandemic wide spread results in locking down vital facilities, digita...
research
06/10/2020

Mind the GAP: Security Privacy Risks of Contact Tracing Apps

Contact tracing apps running on mobile devices promise to reduce the man...
research
06/19/2020

Counting Risk Increments to Make Decisions During an Epidemic

I propose a smartphone app that will allow people to participate in the ...
research
04/22/2020

Risk Estimation of SARS-CoV-2 Transmission from Bluetooth Low Energy Measurements

Digital contact tracing approaches based on Bluetooth low energy (BLE) h...
research
07/22/2020

Demystifying COVID-19 digital contact tracing: A survey on frameworks and mobile apps

The coronavirus pandemic is a new reality and it severely affects the mo...
research
12/24/2020

Function Secret Sharing for PSI-CA:With Applications to Private Contact Tracing

In this work we describe a token-based solution to Contact Tracing via D...
research
02/18/2022

Blockchain Driven Privacy Preserving Contact Tracing Framework in COVID-19

Contact tracing has been proven an effective approach to mitigate the vi...

Please sign up or login with your details

Forgot password? Click here to reset