Air-Gap Electromagnetic Covert Channel

被引:2
|
作者
Guri, Mordechai [1 ]
机构
[1] Ben Gurion Univ Negev, Cyber Secur Res Ctr, Dept Software & Informat Syst Engn, IL-84105 Beer Sheva, Israel
关键词
Air gaps; Atmospheric modeling; Malware; Internet; Optical sensors; Computational modeling; Portable computers; Air-gap; network; exfiltration; electromagnetic; leakage; covert channel; SENSITIVE DATA; POWER; REDUCTION;
D O I
10.1109/TDSC.2023.3300035
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Air-gapped systems are isolated from the Internet due to the sensitive information they handle. This article introduces a covert channel attack that leaks sensitive information over the air from highly isolated systems. The information emanates from the air-gapped computer over the air and can be picked up by a nearby insider or spy with a mobile phone or laptop. Malware on an air-gapped computer can generate radio waves by executing crafted code on the target system. The malicious code exploits the dynamic power consumption of modern computers and manipulates the momentary loads on CPU cores. This technique allows the malware to control the computer's internal utilization and generate low-frequency electromagnetic radiation in the 0-60 kHz band. Sensitive information (e.g., files, encryption keys, biometric data, and keylogging) can be modulated over the emanated signals and received by a nearby mobile phone at a max speed of 1,000 bits/sec. We show that a smartphone or laptop with a small $1 antenna carried by a malicious insider or visitor can be used as a covert receiver. Notably, the attack is highly evasive since it executes from an ordinary user-level process, does not require root privileges, and is effective even within a virtual machine (VM). We discuss the attack model and provide technical details. We implement air-gap transmission of texts and files and present signal generation and data modulation. We test the covert channel and show evaluation results. Finally, we present a set of countermeasures to this air-gap attack.
引用
收藏
页码:2127 / 2144
页数:18
相关论文
共 50 条
  • [41] Air-Gap Convection in Rotating Electrical Machines
    Howey, David A.
    Childs, Peter R. N.
    Holmes, Andrew S.
    IEEE TRANSACTIONS ON INDUSTRIAL ELECTRONICS, 2012, 59 (03) : 1367 - 1375
  • [42] Filament breaches during air-gap spinning
    Wirth, Benedikt
    Warnecke, Moritz
    Schmenk, Bernhard
    Seide, Gunnar
    Gries, Thomas
    Chemical Fibers International, 2011, 61 (01): : 38 - 39
  • [43] FRACTIONAL PITCH COILS IN AIR-GAP ARMATURES
    KEIM, TA
    IEEE TRANSACTIONS ON POWER APPARATUS AND SYSTEMS, 1980, 99 (04): : 1322 - 1322
  • [44] LARGE AIR-GAP DISCHARGE AND SCHLIEREN TECHNIQUES
    DOMENS, P
    DUPUY, J
    GIBERT, A
    DIAZ, R
    HUTZLER, B
    RIU, JP
    RUHLING, F
    JOURNAL OF PHYSICS D-APPLIED PHYSICS, 1988, 21 (11) : 1613 - 1623
  • [45] Optical waveguide design embedded in air-gap
    Okayama, Hideaki
    2008 7TH INTERNATIONAL CONFERENCE ON THE OPTICAL INTERNET (COIN), 2008, : 35 - 36
  • [46] A VERY SIMPLE AIR-GAP CYANIDE SENSOR
    FLIGIER, J
    CZICHON, P
    GREGOROWICZ, Z
    ANALYTICA CHIMICA ACTA, 1980, 118 (01) : 145 - 148
  • [47] Transport analysis of air-gap membrane distillation
    Alklaibi, AM
    Lior, N
    JOURNAL OF MEMBRANE SCIENCE, 2005, 255 (1-2) : 239 - 253
  • [48] Air-gap diffusion distillation: Theory and experiment
    Xu, Shiming
    Xu, Lin
    Wu, Xi
    Wang, Ping
    Jin, Dongxu
    Hu, Junyong
    Zhang, Shuping
    Leng, Qiang
    Wu, Debing
    DESALINATION, 2019, 467 : 64 - 78
  • [49] QUIET, SIMPLE, INEXPENSIVE AIR-GAP SWITCH
    HARVEY, R
    YEVICK, GJ
    REVIEW OF SCIENTIFIC INSTRUMENTS, 1963, 34 (12): : 1444 - &
  • [50] STATIC AND DYNAMIC ASPECTS OF AN AIR-GAP CAPACITOR
    IJNTEMA, DJ
    TILMANS, HAC
    SENSORS AND ACTUATORS A-PHYSICAL, 1992, 35 (02) : 121 - 128