Waves of Knowledge: A Comparative Study of Electromagnetic and Power Side-Channel Monitoring in Embedded Systems

Michael Amar, Lojenaa Navanesan, Asanka P. Sayakkara, Yossi Oren

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

Abstract

In today’s interconnected world, Programmable Logic Controller (PLC) devices play a crucial role in controlling and automating critical processes across various sectors. This increased connectivity, however, also brings about significant security risks, including the threat of the PLC’s control flow being subverted through malicious code injected by state-level actors. This paper offers an exploration of the use of side channels for control flow monitoring. By analyzing subtle variations in system behavior, such as power consumption and electromagnetic radiation, these side channels can be effectively leveraged to infer control flow information, and thus identify potential attacks. To accomplish this, we employ the emitted signals to train a machine learning model, and evaluate our detector by simulating two different types of attacks: malicious code injection and sensitive data infiltration. Additionally, we provide a unique comparison between the power consumption and electromagnetic side channels, highlighting the primary benefits each signal type exhibits in terms of detecting and preventing attacks. The results presented in this paper can aid system manufacturers in selecting the most suitable channel for defending their system, based on the specific requirements and context of their PLC application.

Original languageEnglish
Title of host publicationSecurity and Privacy in Cyber-Physical Systems and Smart Vehicles - First EAI International Conference, SmartSP 2023, Proceedings
EditorsYu Chen, Chung-Wei Lin, Bo Chen, Qi Zhu
PublisherSpringer Science and Business Media Deutschland GmbH
Pages158-170
Number of pages13
ISBN (Print)9783031516290
DOIs
StatePublished - 1 Jan 2024
Event1st EAI International Conference on Security and Privacy in Cyber-Physical Systems and Smart Vehicles, SmartSP 2023 - Chicago, United States
Duration: 12 Oct 202313 Oct 2023

Publication series

NameLecture Notes of the Institute for Computer Sciences, Social-Informatics and Telecommunications Engineering, LNICST
Volume552 LNICST
ISSN (Print)1867-8211
ISSN (Electronic)1867-822X

Conference

Conference1st EAI International Conference on Security and Privacy in Cyber-Physical Systems and Smart Vehicles, SmartSP 2023
Country/TerritoryUnited States
CityChicago
Period12/10/2313/10/23

Keywords

  • Firmware verification
  • Malware detection
  • Malware monitoring
  • PLC environment
  • Physical side-channel analysis

ASJC Scopus subject areas

  • Computer Networks and Communications

Fingerprint

Dive into the research topics of 'Waves of Knowledge: A Comparative Study of Electromagnetic and Power Side-Channel Monitoring in Embedded Systems'. Together they form a unique fingerprint.

Cite this