Distributed and Mobile Message Level Relaying/Replaying of GNSS Signals

02/23/2022
by   M. Lenhart, et al.
0

With the introduction of Navigation Message Authentication (NMA), future Global Navigation Satellite Systems (GNSSs) prevent spoofing by simulation, i.e., the generation of forged satellite signals based on public information. However, authentication does not prevent record-and-replay attacks, commonly termed as meaconing. These attacks are less powerful in terms of adversarial control over the victim receiver location and time, but by acting at the signal level, they are not thwarted by NMA. This makes replaying/relaying attacks a significant threat for GNSS. While there are numerous investigations on meaconing, the majority does not rely on actual implementation and experimental evaluation in real-world settings. In this work, we contribute to the improvement of the experimental understanding of meaconing attacks. We design and implement a system capable of real-time, distributed, and mobile meaconing, built with off-the-shelf hardware. We extend from basic distributed attacks, with signals from different locations relayed over the Internet and replayed within range of the victim receiver(s): this has high bandwidth requirements and thus depends on the quality of service of the available network to work. To overcome this limitation, we propose to replay on message level, including the authentication part of the payload. The resultant reduced bandwidth enables the attacker to operate in mobile scenarios, as well as to replay signals from multiple GNSS constellations and/or bands simultaneously. Additionally, the attacker can delay individually selected satellite signals to potentially influence the victim position and time solution in a more fine-grained manner. Our versatile test-bench, enabling different types of replaying/relaying attacks, facilitates testing realistic scenarios towards new and improved replaying/relaying-focused countermeasures in GNSS receivers.

READ FULL TEXT

page 5

page 7

page 8

page 9

page 10

research
02/22/2022

DEMO: Relay/Replay Attacks on GNSS signals

Global Navigation Satellite Systems (GNSS) are ubiquitously relied upon ...
research
10/23/2020

Detection of Replay Attacks to GNSS based on Partial Correlations and Authentication Data Unpredictability

Intentional interference, and in particular GNSS spoofing, is currently ...
research
04/06/2023

On the Limits of Cross-Authentication Checks for GNSS Signals

Global navigation satellite systems (GNSSs) are implementing security me...
research
04/25/2022

Cryptography Is Not Enough: Relay Attacks on Authenticated GNSS Signals

Civilian-GNSS is vulnerable to signal spoofing attacks, and countermeasu...
research
05/05/2023

Detecting GNSS misbehavior leveraging secure heterogeneous time sources

Civilian Global Navigation Satellite Systems (GNSS) vulnerabilities are ...
research
05/11/2023

Watch This Space: Securing Satellite Communication through Resilient Transmitter Fingerprinting

Due to an increase in the availability of cheap off-the-shelf radio hard...
research
05/09/2023

Probabilistic Detection of GNSS Spoofing using Opportunistic Information

Global Navigation Satellite Systems (GNSS) are integrated into many devi...

Please sign up or login with your details

Forgot password? Click here to reset