Secure Device Trust Bootstrapping Against Collaborative Signal Modification Attacks
Xiaochan Xue, Shucheng Yu, Min Song
Abstract
Bootstrapping security among wireless devices without prior-shared secrets is frequently demanded in emerging wireless and mobile applications. One promising approach for this problem is to utilize in-band physical-layer radio-frequency (RF) signals for authenticated key establishment because of the efficiency and high usability. However, existing in-band authenticated key agreement (AKA) protocols are mostly vulnerable to Man-in-the-Middle (MitM) attacks, which can be launched by modifying the transmitted wireless signals over the air. By annihilating legitimate signals and injecting malicious signals, signal modification attackers are able to completely control the communication channels and spoof victim wireless devices. State-of-the-art (SOTA) techniques addressing such attacks require additional auxiliary hardware or are limited to single attackers. This paper proposes a novel in-band security bootstrapping technique that can thwart colluding signal modification attackers. Different from SOTA solutions, our design is compatible with commodity devices without requiring additional hardware. We achieve this based on the internal randomness of each device that is unpredictable to attackers. Any modification to RF signals will be detected with high probabilities. Extensive security analysis and experimentation on the USRP platform demonstrate the effectiveness of our design under various attack strategies.
Ask about this paper
Ask your agent about it.
Lune has read the top-tier papers around this one, so every answer names the papers it rests on.
Your agent calls
Lunesearch_papers
Free to start. No credit card required.
Terminal
Install the CLIlune papers get 67e7718d-a45e-402f-a49f-b1430c89a4eeRelated papers
- Secure Device Bootstrapping Without Secrets Resistant to Signal Manipulation AttacksNirnimesh Ghose, Loukas Lazos, Ming LiS&P 2018 · 11 citations
- HELP: Helper-Enabled In-Band Device Pairing Resistant Against Signal CancellationNirnimesh Ghose, Loukas Lazos, Ming LiUSENIX Security 2017 · 13 citations
- AEROKEY: Using Ambient Electromagnetic Radiation for Secure and Usable Wireless Device AuthenticationKyuin Lee, Yucheng Yang, Omkar Prabhune, Aishwarya Lekshmi Chithra et al.UbiComp 2022 · 11 citations
- Practical Obfuscation of BLE Physical-Layer Fingerprints on Mobile DevicesHadi Givehchian, Nishant Bhaskar, Alexander Redding, Han Zhao et al.S&P 2024 · 16 citations
- RF-Rock: An Intermodulation-based RFID Unauthorized Identification Attack without Tag ActivationChen Gong, Bo Liang, Purui Wang, Xiaoyu Ji et al.MobiCom 2025 · 1 citation
