Powerless Security A Security Analysis of In-Home Power Line Communications Based on HomePlug AV2

被引:0
|
作者
Hoffmann, Stefan [1 ]
Mueller, Jens [2 ]
Schwenk, Joerg [2 ]
Bumiller, Gerd [1 ]
机构
[1] Univ Appl Sci Ruhr West, Bottrop, Germany
[2] Ruhr Univ Bochum, Bochum, Germany
来源
APPLIED CRYPTOGRAPHY AND NETWORK SECURITY (ACNS 2020), PT II | 2020年 / 12147卷
关键词
Power line communications; PLC; Security; HomePlug;
D O I
10.1007/978-3-030-57878-7_11
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Power line communication (PLC) allows home users and industries to transfer data over power cables. Protection of transmitted data is crucial because signals are not limited to "one's own four walls". We provide a detailed and structured security analysis of the currently most widely used in-Home PLC standard, namely the Broadband-PLC specification HomePlug AV2 (part of IEEE 1901), and present a design weakness in the pairing process as well as a new offline dictionary attack that can be used to compute the main network key efficiently. We evaluated our attacks on 13 widely used PLC devices and found all of them be vulnerable. We provide different countermeasures and discuss their advantages and disadvantages. We responsibly disclosed the vulnerabilities and are currently supporting the vendors in fixing these issues.
引用
收藏
页码:213 / 232
页数:20
相关论文
共 50 条
  • [21] Model-based Security Analysis for Mobile Communications
    Juerjens, Jan
    Schreck, Joerg
    Bartmann, Peter
    ICSE'08 PROCEEDINGS OF THE THIRTIETH INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING, 2008, : 683 - 692
  • [22] Security Analysis of Smart Home Based on Life Cycle
    Mao, Yuhang
    Li, Xuejun
    Jia, Yan
    Zhao, Shangru
    Zhang, Yuqing
    2019 IEEE SMARTWORLD, UBIQUITOUS INTELLIGENCE & COMPUTING, ADVANCED & TRUSTED COMPUTING, SCALABLE COMPUTING & COMMUNICATIONS, CLOUD & BIG DATA COMPUTING, INTERNET OF PEOPLE AND SMART CITY INNOVATION (SMARTWORLD/SCALCOM/UIC/ATC/CBDCOM/IOP/SCI 2019), 2019, : 1444 - 1449
  • [23] Home Security Surveillance based on Acoustic Scenes Analysis
    Chen, Aiwu
    He, Qianhua
    Wang, Xing
    Li, Yanxiong
    2017 10TH INTERNATIONAL CONGRESS ON IMAGE AND SIGNAL PROCESSING, BIOMEDICAL ENGINEERING AND INFORMATICS (CISP-BMEI), 2017,
  • [24] ANN based dynamic security regions of dynamic security analysis of power system
    Yan, Yu
    Liu, Tianqi
    Dianli Xitong Zidonghua/Automation of Electric Power Systems, 2003, 27 (23): : 27 - 32
  • [25] In-home Power Line Communication Media Access Control Protocol Based on Collision Resolution
    汪波
    黄佩伟
    钟幼平
    戚英豪
    JournalofShanghaiJiaotongUniversity(Science), 2009, 14 (06) : 645 - 650
  • [26] In-home power line communication media access control protocol based on collision resolution
    Wang B.
    Huang P.-W.
    Zhong Y.-P.
    Qi Y.-H.
    Journal of Shanghai Jiaotong University (Science), 2009, 14 (6) : 645 - 650
  • [27] Power System Security Assessment and Remedial Measures based on the on-line Dynamic Security Assessment System
    Wang, Dajiang
    Hu, Haoming
    Chen, Xiao
    Li, Jie
    Ge, Yaming
    Cheng, Jinmin
    Chen, Xi
    Cao, Yi
    Wang, Qi
    Fu, Wei
    Yan, Zhaoyang
    Li, Gang
    Hao, Yuchen
    Zhu, Tao
    3RD INTERNATIONAL CONFERENCE ON INTELLIGENT ENERGY AND POWER SYSTEMS (IEPS 2017), 2017, : 7 - 13
  • [28] A Review: IoT Based Power & Security Management for Smart Home System
    Namdeo, Deokar Shital
    Pawar, V. R.
    2017 INTERNATIONAL CONFERENCE OF ELECTRONICS, COMMUNICATION AND AEROSPACE TECHNOLOGY (ICECA), VOL 1, 2017, : 552 - 556
  • [29] IoT based Smart Home Design using Power and Security Management
    Chhabra, Jasmeet
    Gupta, Punit
    2016 1ST INTERNATIONAL CONFERENCE ON INNOVATION AND CHALLENGES IN CYBER SECURITY (ICICCS 2016), 2016, : 6 - 10
  • [30] Security Analysis of Power Electronic-based Power Systems
    Shakerighadi, Bahram
    Peyghami, Saeed
    Ebrahimzadeh, Esmaeil
    Blaabjerg, Frede
    Bak, Claus Leth
    45TH ANNUAL CONFERENCE OF THE IEEE INDUSTRIAL ELECTRONICS SOCIETY (IECON 2019), 2019, : 4933 - 4937