SatBleed: Security of Commoditized Communication Modules in Satellites
Ulysse Planta, Julian Rederlechner, Martin Strohmeier, Mathias Fischer, Ali Abbasi
Abstract
Substantial reduction in launch and manufacturing costs has resulted in the accelerated deployment of small satellite missions, with commercial off-the-shelf (COTS) components becoming the prevailing standard for specific subsystems. However, this modular architecture introduces critical security risks, most notably in the Communication Subsystem (COM), which is continuously exposed by design and implicitly trusted as the entry point for command and control. We construct a tailored threat taxonomy for attacks targeting the COM subsystem and analyze representative COM systems from various vendors. Our findings uncover severe vulnerabilities across firmware, protocols, and architectural designs. This work presents the first in-depth security evaluation of widely deployed COTS COM modules employed in small satellites, identifying vulnerabilities affecting dozens of missions. To assess the real-world impact, we correlate our discoveries with open-source telemetry data, inferring at least 28 vulnerable missions in orbit that are susceptible to hostile takeover. Our work reveals that satellite COM subsystems form an attractive and dangerously neglected attack surface, necessitating urgent attention from the community.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext e9cd1014-8ceb-48e6-8274-3a94753352a9Builds on8
- Screaming Channels: When Electromagnetic Side Channels Meet Radio TransceiversGiovanni Camurati, Sebastian Poeplau, Marius Muench, Tom Hayes et al.CCS 2018 · 186 citations
- A Tale of Sea and Sky On the Security of Maritime VSAT CommunicationsJames Pavur, Daniel Moser, Martin Strohmeier, Vincent Lenders et al.S&P 2020 · 72 citations
- Watch This Space: Securing Satellite Communication through Resilient Transmitter FingerprintingJoshua Smailes, Sebastian Köhler, Simon Birnbach, Martin Strohmeier et al.CCS 2023 · 25 citations
- Wireless Signal Injection Attacks on VSAT Satellite ModemsRobin Bisping, Johannes Willbold, Martin Strohmeier, Vincent LendersUSENIX Security 2024 · 11 citations
- HoneySat: A Network-based Satellite Honeypot FrameworkEfrén López-Morales, Ulysse Planta, Gabriele Marra, Carlos Gonzalez-Cortes et al.NDSS 2026 · 4 citations
Related papers
- Space Odyssey: An Experimental Software Security Analysis of SatellitesJohannes Willbold, Moritz Schloegel, Manuel Vögele, Maximilian Gerhardt et al.S&P 2023
- Space RADSIM: Binary-Agnostic Fault Injection to Evaluate Cosmic Radiation Impact on Exploit Mitigation Techniques in SpaceJohannes Willbold, Tobias Cloosters, Simon Wörner, Felix Buchmann et al.S&P 2025
- A Comprehensive Analysis of Security Vulnerabilities and Attacks in Satellite ModemsLingjing Yu, Jingli Hao, Jun Ma, Yong Sun et al.CCS 2024 · 8 citations
- Deciphering the Enigma of Satellite Computing with COTS Devices: Measurement and AnalysisRuolin Xing, Mengwei Xu, Ao Zhou, Qing Li et al.MobiCom 2024 · 41 citations
- Exploring Real-Time Satellite Computing: From Energy and Thermal PerspectivesQing Li, Shangguang Wang, Chenren Xu, Xiao Ma et al.RTSS 2024 · 12 citations
