SatBleed: Security of Commoditized Communication Modules in Satellites
Ulysse Planta, Julian Rederlechner, Martin Strohmeier, Mathias Fischer, Ali Abbasi
摘要
Substantial reduction in launch and manufacturing costs has resulted in the accelerated deployment of small satellite missions, with commercial off-the-shelf (COTS) components becoming the prevailing standard for specific subsystems. However, this modular architecture introduces critical security risks, most notably in the Communication Subsystem (COM), which is continuously exposed by design and implicitly trusted as the entry point for command and control. We construct a tailored threat taxonomy for attacks targeting the COM subsystem and analyze representative COM systems from various vendors. Our findings uncover severe vulnerabilities across firmware, protocols, and architectural designs. This work presents the first in-depth security evaluation of widely deployed COTS COM modules employed in small satellites, identifying vulnerabilities affecting dozens of missions. To assess the real-world impact, we correlate our discoveries with open-source telemetry data, inferring at least 28 vulnerable missions in orbit that are susceptible to hostile takeover. Our work reveals that satellite COM subsystems form an attractive and dangerously neglected attack surface, necessitating urgent attention from the community.
问问这篇 Paper
智能体会读完全文。
Lune 把这篇 Paper 索引到了每一个公式,引用它的顶会 Paper 也一样。你提问,回答直接引用原文。
它引用的顶会 Paper8
- Screaming Channels: When Electromagnetic Side Channels Meet Radio TransceiversGiovanni Camurati, Sebastian Poeplau, Marius Muench, Tom Hayes 等CCS 2018 · 被引用 186 次
- A Tale of Sea and Sky On the Security of Maritime VSAT CommunicationsJames Pavur, Daniel Moser, Martin Strohmeier, Vincent Lenders 等S&P 2020 · 被引用 72 次
- Watch This Space: Securing Satellite Communication through Resilient Transmitter FingerprintingJoshua Smailes, Sebastian Köhler, Simon Birnbach, Martin Strohmeier 等CCS 2023 · 被引用 25 次
- Wireless Signal Injection Attacks on VSAT Satellite ModemsRobin Bisping, Johannes Willbold, Martin Strohmeier, Vincent LendersUSENIX Security 2024 · 被引用 11 次
- HoneySat: A Network-based Satellite Honeypot FrameworkEfrén López-Morales, Ulysse Planta, Gabriele Marra, Carlos Gonzalez-Cortes 等NDSS 2026 · 被引用 4 次
相关 Paper
- Space Odyssey: An Experimental Software Security Analysis of SatellitesJohannes Willbold, Moritz Schloegel, Manuel Vögele, Maximilian Gerhardt 等S&P 2023
- Space RADSIM: Binary-Agnostic Fault Injection to Evaluate Cosmic Radiation Impact on Exploit Mitigation Techniques in SpaceJohannes Willbold, Tobias Cloosters, Simon Wörner, Felix Buchmann 等S&P 2025
- A Comprehensive Analysis of Security Vulnerabilities and Attacks in Satellite ModemsLingjing Yu, Jingli Hao, Jun Ma, Yong Sun 等CCS 2024 · 被引用 8 次
- Deciphering the Enigma of Satellite Computing with COTS Devices: Measurement and AnalysisRuolin Xing, Mengwei Xu, Ao Zhou, Qing Li 等MobiCom 2024 · 被引用 41 次
- Exploring Real-Time Satellite Computing: From Energy and Thermal PerspectivesQing Li, Shangguang Wang, Chenren Xu, Xiao Ma 等RTSS 2024 · 被引用 12 次
