Attacks on a Certificate based Generic Access Scheme for Internet of Drones

Shuangshuang Liu, Chien‐Ming Chen · 2022 IEEE International Conference on Advances in Electrical Engineering and Computer Applications (AEECA) · 2022

In recent years, IoDs have begun to develop in the field of specialization, and their application scenarios are becoming more and more extensive, from street scene monitoring and patrolling in daily life to unmanned reconnaissance aircraft in the military field. However, the IoD will inevitably encounter data security problems in the process of working. For example, the IoD is easy be stolen by attackers in the process of transmitting the data monitoring the street scene to the control center. Therefore, it is very necessary to establish a secure communication protocol in the process of IoD and ground communication. In 2021, Shehzad Ashraf Chaudhry et al. provided an Internet access scheme for drones based on a certificate. They claim that their scheme can provide anonymity and can resist IoD simulation attacks, MITM attacks, and replay attacks. Although the protocol can resist the above attacks, once the protocol encounters the IoD physical capture attacks, the information communicated between the IoD and the ground control center will also be obtained by the attacker. In this article, we utilize D-Y attacker model to cryptanalyze their scheme. During the analysis of the protocol, and it is found that their protocol can not resist IoD physical capture attacks, so their protocol is not secure.

Read the paper · More papers on PaperTik