Bridging the Air Gap between Isolated Networks and Mobile Phones in a Practical Cyber-Attack

被引:29
|
作者
Guri, Mordechai [1 ]
Monitz, Matan [1 ]
Elovici, Yuval [1 ]
机构
[1] Ben Gurion Univ Negev, POB 653, IL-8410501 Beer Sheva, Israel
关键词
Air-gap; data exfiltration; TEMPEST; EMSEC; FM Radio; APT; cyber-attack; bridging the air-gap;
D O I
10.1145/2870641
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Information is the most critical asset of modern organizations, and accordingly it is one of the resources most coveted by adversaries. When highly sensitive data is involved, an organization may resort to air gap isolation in which there is no networking connection between the inner network and the external world. While infiltrating an air-gapped network has been proven feasible in recent years, data exfiltration from an air-gapped network is still considered one of the most challenging phases of an advanced cyber-attack. In this article, we present "AirHopper," a bifurcated malware that bridges the air gap between an isolated network and nearby infected mobile phones using FM signals. While it is known that software can intentionally create radio emissions from a video card, this is the first time that mobile phones serve as the intended receivers of the maliciously crafted electromagnetic signals. We examine the attack model and its limitations and discuss implementation considerations such as modulation methods, signal collision, and signal reconstruction. We test AirHopper in an existing workplace at a typical office building and demonstrate how valuable data such as keylogging and files can be exfiltrated from physically isolated computers to mobile phones at a distance of 1-7 meters, with an effective bandwidth of 13-60 bytes per second.
引用
收藏
页数:25
相关论文
共 50 条
  • [41] Air Pollution in India: Bridging the Gap between Science and Policy
    Ravindra, Khaiwal
    Sidhu, Maninder Kaur
    Mor, Suman
    John, Siby
    Pyne, Saumyadipta
    [J]. JOURNAL OF HAZARDOUS TOXIC AND RADIOACTIVE WASTE, 2016, 20 (04)
  • [42] Bridging the Gap between Explicative and Treatment Research: A Model and Practical Implications
    Ronald L. Blount
    Victoria L. Bunke
    Jonathan F. Zaff
    [J]. Journal of Clinical Psychology in Medical Settings, 2000, 7 : 79 - 90
  • [43] Bridging the gap between explicative and treatment research: A model and practical implications
    Blount, RL
    Bunke, VL
    Zaff, JF
    [J]. JOURNAL OF CLINICAL PSYCHOLOGY IN MEDICAL SETTINGS, 2000, 7 (01) : 79 - 90
  • [44] BRIDGING PRODUCTIVITY GAP - ITS PRACTICAL IMPLEMENTATION ON SHOP FLOOR OF IPS MOBILE MILL
    LIVINGST.P
    [J]. AMERICAN PAPER INDUSTRY, 1971, 53 (11): : 19 - &
  • [45] Bridging the Gap in Privacy-Preserving Revocation: Practical and Scalable Revocation of Mobile eIDs
    Hoelzl, Michael
    Roland, Michael
    Mir, Omid
    Mayrhofer, Rene
    [J]. 33RD ANNUAL ACM SYMPOSIUM ON APPLIED COMPUTING, 2018, : 1601 - 1609
  • [46] A Game Between Cyber Attack and Defense Under the Topology of Satellite Networks
    Cui, Yucheng
    Xi, Zhiyu
    Zhang, Xingpeng
    [J]. Lecture Notes in Electrical Engineering, 2023, 845 LNEE : 5113 - 5125
  • [47] Living between Infrastructures: Commuter Networks, Broadcast TV, and Mobile Phones
    Lamarre, Thomas
    [J]. BOUNDARY 2-AN INTERNATIONAL JOURNAL OF LITERATURE AND CULTURE, 2015, 42 (03): : 157 - 170
  • [48] Bridging the Gap Between Geophysics and Geology With Generative Adversarial Networks
    Song, Suihong
    Mukerji, Tapan
    Hou, Jiagen
    [J]. IEEE TRANSACTIONS ON GEOSCIENCE AND REMOTE SENSING, 2022, 60
  • [49] Bridging the gap Between the Social and the Technological With Actor-Networks
    Hughes, Robert
    [J]. PROCEEDINGS OF THE 13TH EUROPEAN CONFERENCE ON RESEARCH METHODOLOGY FOR BUSINESS AND MANAGEMENT STUDIES (ECRM 2014), 2014, : 185 - 191
  • [50] Bridging the gap between peak and average loads on science networks
    Nickolay, Sam
    Jung, Eun-Sung
    Kettimuthu, Rajkumar
    Foster, Ian
    [J]. FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2018, 79 : 169 - 179