Waves of Knowledge: A Comparative Study of Electromagnetic and Power Side-Channel Monitoring in Embedded Systems

  • Michael Amar
  • , Lojenaa Navanesan
  • , Asanka P. Sayakkara
  • , Yossi Oren

    Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

    1 Scopus citations

    Abstract

    In today’s interconnected world, Programmable Logic Controller (PLC) devices play a crucial role in controlling and automating critical processes across various sectors. This increased connectivity, however, also brings about significant security risks, including the threat of the PLC’s control flow being subverted through malicious code injected by state-level actors. This paper offers an exploration of the use of side channels for control flow monitoring. By analyzing subtle variations in system behavior, such as power consumption and electromagnetic radiation, these side channels can be effectively leveraged to infer control flow information, and thus identify potential attacks. To accomplish this, we employ the emitted signals to train a machine learning model, and evaluate our detector by simulating two different types of attacks: malicious code injection and sensitive data infiltration. Additionally, we provide a unique comparison between the power consumption and electromagnetic side channels, highlighting the primary benefits each signal type exhibits in terms of detecting and preventing attacks. The results presented in this paper can aid system manufacturers in selecting the most suitable channel for defending their system, based on the specific requirements and context of their PLC application.

    Original languageEnglish
    Title of host publicationSecurity and Privacy in Cyber-Physical Systems and Smart Vehicles - First EAI International Conference, SmartSP 2023, Proceedings
    EditorsYu Chen, Chung-Wei Lin, Bo Chen, Qi Zhu
    PublisherSpringer Science and Business Media Deutschland GmbH
    Pages158-170
    Number of pages13
    ISBN (Print)9783031516290
    DOIs
    StatePublished - 1 Jan 2024
    Event1st EAI International Conference on Security and Privacy in Cyber-Physical Systems and Smart Vehicles, SmartSP 2023 - Chicago, United States
    Duration: 12 Oct 202313 Oct 2023

    Publication series

    NameLecture Notes of the Institute for Computer Sciences, Social-Informatics and Telecommunications Engineering, LNICST
    Volume552 LNICST
    ISSN (Print)1867-8211
    ISSN (Electronic)1867-822X

    Conference

    Conference1st EAI International Conference on Security and Privacy in Cyber-Physical Systems and Smart Vehicles, SmartSP 2023
    Country/TerritoryUnited States
    CityChicago
    Period12/10/2313/10/23

    Keywords

    • Firmware verification
    • Malware detection
    • Malware monitoring
    • PLC environment
    • Physical side-channel analysis

    ASJC Scopus subject areas

    • Computer Networks and Communications

    Fingerprint

    Dive into the research topics of 'Waves of Knowledge: A Comparative Study of Electromagnetic and Power Side-Channel Monitoring in Embedded Systems'. Together they form a unique fingerprint.

    Cite this