Powerless Security A Security Analysis of In-Home Power Line Communications Based on HomePlug AV2

被引:0
|
作者
Hoffmann, Stefan [1 ]
Mueller, Jens [2 ]
Schwenk, Joerg [2 ]
Bumiller, Gerd [1 ]
机构
[1] Univ Appl Sci Ruhr West, Bottrop, Germany
[2] Ruhr Univ Bochum, Bochum, Germany
来源
APPLIED CRYPTOGRAPHY AND NETWORK SECURITY (ACNS 2020), PT II | 2020年 / 12147卷
关键词
Power line communications; PLC; Security; HomePlug;
D O I
10.1007/978-3-030-57878-7_11
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Power line communication (PLC) allows home users and industries to transfer data over power cables. Protection of transmitted data is crucial because signals are not limited to "one's own four walls". We provide a detailed and structured security analysis of the currently most widely used in-Home PLC standard, namely the Broadband-PLC specification HomePlug AV2 (part of IEEE 1901), and present a design weakness in the pairing process as well as a new offline dictionary attack that can be used to compute the main network key efficiently. We evaluated our attacks on 13 widely used PLC devices and found all of them be vulnerable. We provide different countermeasures and discuss their advantages and disadvantages. We responsibly disclosed the vulnerabilities and are currently supporting the vendors in fixing these issues.
引用
收藏
页码:213 / 232
页数:20
相关论文
共 50 条
  • [41] Cyber-Physical Vulnerability and Security Analysis of Power Grid with HVDC Line
    Gholami, Amir
    Mousavi, Mohammad
    Srivastava, Anurag K.
    Mehrizi-Sani, Ali
    2019 51ST NORTH AMERICAN POWER SYMPOSIUM (NAPS), 2019,
  • [42] Improvement of contingency ranking method for power system on-line security analysis
    Cai, Jianzhuang, 2000, Autom Electr Power Syst Press, Nanjing, China (24):
  • [43] Power system security and voltage collapse: a line outage based indicator for prediction
    Moghavvemi, M
    Faruque, MO
    INTERNATIONAL JOURNAL OF ELECTRICAL POWER & ENERGY SYSTEMS, 1999, 21 (06) : 455 - 461
  • [44] UPFC-based line overload control for power system security enhancement
    Song, Pengcheng
    Xu, Zheng
    Dong, Huanfeng
    IET GENERATION TRANSMISSION & DISTRIBUTION, 2017, 11 (13) : 3310 - 3317
  • [45] Power analysis security evaluation on Piccolo based on FPGA platform
    Wang, Chen-Xu
    Li, Jing-Hu
    Yu, Ming-Yan
    Wang, Jin-Xiang
    Dianzi Yu Xinxi Xuebao/Journal of Electronics and Information Technology, 2014, 36 (01): : 101 - 107
  • [46] Analysis of power system operation state based on adequacy and security
    Ding, Ming
    Li, Sheng-Hu
    Wu, Hong-Bin
    Wang, Min
    Wang, Xing-Qiang
    Zhongguo Dianji Gongcheng Xuebao/Proceedings of the Chinese Society of Electrical Engineering, 2004, 24 (04): : 43 - 49
  • [47] Contingency Analysis and Security Constraint based Optimal Power Flow in Power Network
    Yadav, Deepak
    Chauhan, Aditya Singh
    Singh, Brijesh
    3RD INTERNATIONAL CONFERENCE ON INNOVATIVE APPLICATIONS OF COMPUTATIONAL INTELLIGENCE ON POWER, ENERGY AND CONTROLS WITH THEIR IMPACT ON HUMANITY (CIPECH-18), 2018, : 210 - 214
  • [48] 2-ASCET for Broadband Multicarrier Transmission over in-home and in-vehicle Power Line Networks
    Pinto-Benel, Freddy A.
    Cruz-Roldan, Fernando
    2015 IEEE 18TH INTERNATIONAL CONFERENCE ON INTELLIGENT TRANSPORTATION SYSTEMS, 2015, : 1351 - 1356
  • [49] A Research of On-Line Static Security Analysis Based On WEB Services
    Xu, Peng
    Liu, Wenying
    2011 ASIA-PACIFIC POWER AND ENERGY ENGINEERING CONFERENCE (APPEEC), 2011,
  • [50] 3D Markov Chain based Narrowband Interference Model for in-Home Broadband Power Line Communication
    Yin, Jun
    Zhu, Xu
    Huang, Yi
    2016 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM), 2016,