liu.seSearch for publications in DiVA
Endre søk
RefereraExporteraLink to record
Permanent link

Direct link
Referera
Referensformat
  • apa
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • oxford
  • Annet format
Fler format
Språk
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Annet språk
Fler språk
Utmatningsformat
  • html
  • text
  • asciidoc
  • rtf
Enhancing Cybersecurity for LDACS: a Secure and Lightweight Mutual Authentication and Key Agreement Protocol
Linköpings universitet, Institutionen för datavetenskap, Databas och informationsteknik. Linköpings universitet, Tekniska fakulteten.
Linköpings universitet, Institutionen för datavetenskap, Databas och informationsteknik. Linköpings universitet, Tekniska fakulteten.
Linköpings universitet, Institutionen för datavetenskap, Databas och informationsteknik. Linköpings universitet, Tekniska fakulteten.ORCID-id: 0000-0002-9829-9287
German Aerosp Ctr DLR, Germany.
Vise andre og tillknytning
2023 (engelsk)Inngår i: 2023 IEEE/AIAA 42ND DIGITAL AVIONICS SYSTEMS CONFERENCE, DASC, IEEE , 2023Konferansepaper, Publicerat paper (Fagfellevurdert)
Abstract [en]

The aviation industry faces significant challenges due to rising global air travel demand. Frequency saturation in Air Traffic Management (ATM) leads to communication problems, necessitating the enhancement of traditional systems. The Single European Sky ATM Research (SESAR) initiative, backed by the European Commission, aims to digitize ATM, with the L-band Digital Aeronautical Communications System (LDACS) as a key component. LDACS aims to improve communication, enhance surveillance, and optimize airspace usage for safer, more efficient ATM. Although LDACS is protected against most cyberattacks, a critical security objective, anonymity, is currently overlooked. To strengthen LDACS's security, robust authentication mechanisms, Post-Quantum security, and measures to ensure aircraft anonymity are crucial. Therefore, we propose a comprehensive security framework to enhance LDACS's cybersecurity, focusing on mutual authentication and key agreement. The protocol uses Physical Unclonable Function (PUF) for robust mutual authentication and Bit-flipping Key Encapsulation (BIKE) for secure session key establishment utilizing Post-Quantum Cryptography (PQC). This framework ensures anonymity and secure communication between aircraft and ground stations while minimizing message exchange, latency, and data overhead. An informal security analysis confirms our proposed framework's potential to augment the efficiency and security of ATM operations.

sted, utgiver, år, opplag, sider
IEEE , 2023.
Serie
IEEE-AIAA Digital Avionics Systems Conference, ISSN 2155-7195, E-ISSN 2155-7209
Emneord [en]
Aviation Cybersecurity; BIKE; LDACS; PUF; Mutual Authentication and Key Exchange (MAKE)
HSV kategori
Identifikatorer
URN: urn:nbn:se:liu:diva-200533DOI: 10.1109/DASC58513.2023.10311307ISI: 001103267600200ISBN: 9798350333572 (digital)ISBN: 9798350333589 (tryckt)OAI: oai:DiVA.org:liu-200533DiVA, id: diva2:1832754
Konferanse
IEEE/AIAA 42nd Digital Avionics Systems Conference (DASC), Barcelona, SPAIN, oct 01-05, 2023
Merknad

Funding Agencies|Trafikverket and Luftfartsverket under Automation Program II; Autonomous Systems and Software Program (WASP)

Tilgjengelig fra: 2024-01-30 Laget: 2024-01-30 Sist oppdatert: 2026-05-12
Inngår i avhandling
1. Secure Mobility and Authentication Protocols in Heterogeneous Aviation Data Networks
Åpne denne publikasjonen i ny fane eller vindu >>Secure Mobility and Authentication Protocols in Heterogeneous Aviation Data Networks
2026 (engelsk)Doktoravhandling, med artikler (Annet vitenskapelig)
Abstract [en]

Civil aviation is undergoing a transition towards digital, IP-based air–ground communication systems in order to accommodate increasing air traffic density, improve operational efficiency, and maintain safety-critical services. Within this evolution, technologies such as Controller–Pilot Data Link Communications (CPDLC), the L-band Digital Aeronautical Communications System (LDACS), and the Future Communication Infrastructure (FCI) have become key to enabling continuous data exchange between aircraft and ground systems. Despite their operational benefits, however, these systems do not yet provide security protection in a unified and consistently deployed manner across communication establishment, operational message exchange, and mobility or handover phases. In particular, guarantees related to mutual authentication, key establishment, integrity, confidentiality, and secure mobility management are not uniformly maintained across current air–ground communication environments. As a result, aviation communication systems remain exposed to replay, impersonation, message injection, man-in-the-middle (MITM), session hijacking, and denial-of-service (DoS) attacks, especially during mobility events and handover transitions, thereby posing significant risks to operational safety.

Motivated by these challenges, we develop lightweight, aviation-compatible, and formally verifiable security frameworks in this thesis to secure communication and handover across CPDLC, LDACS, and heterogeneous FCI environments. For CPDLC, the thesis introduces lightweight security mechanisms that provide mutual authentication, session key establishment, and secure handover by using Elliptic Curve Cryptography (ECC), Elliptic Curve Diffie–Hellman (ECDH), Schnorr signatures, and symmetric protection. For LDACS, the thesis strengthens security through lightweight authentication together with post-quantum-resilient key establishment and handover mechanisms. In this framework, Physically Unclonable Functions (PUFs) enable lightweight hardware-bound authentication, while the Bit-Flipping Key Encapsulation (BIKE) mechanism supports post-quantum-secure key establishment. This design reduces reliance on conventional public key infrastructure and supports secure key continuity across intra- and inter-domain scenarios. At the network level, the thesis further introduces a Host Identity Protocol (HIP)-based framework for the FCI to enable secure multi-homing and seamless mobility across heterogeneous links, including LDACS, the Aeronautical Mobile Airport Communications System (AeroMACS), and Satellite Communications (SATCOM).

To ensure that the proposed mechanisms provide rigorous security guarantees suitable for safety-critical aviation environments, the thesis complements framework design with formal security assurance. Symbolic analysis using Tamarin Prover and ProVerif is employed to establish essential properties, including authentication, key secrecy, forward secrecy, and secure handover, under strong adversary models. Overall, this thesis advances the security and robustness of both legacy and nextgeneration aviation communication systems across operational communication and mobility scenarios.

sted, utgiver, år, opplag, sider
Linköping: Linköping University Electronic Press, 2026. s. 81
Serie
Linköping Studies in Science and Technology. Dissertations, ISSN 0345-7524 ; 2526
HSV kategori
Identifikatorer
urn:nbn:se:liu:diva-223884 (URN)10.3384/9789181185690 (DOI)9789181185683 (ISBN)9789181185690 (ISBN)
Disputas
2026-08-19, Ada Lovelace, B Building, Campus Valla, Linköping, 09:15 (engelsk)
Opponent
Veileder
Tilgjengelig fra: 2026-05-12 Laget: 2026-05-12 Sist oppdatert: 2026-05-12bibliografisk kontrollert

Open Access i DiVA

Fulltekst mangler i DiVA

Andre lenker

Forlagets fulltekst

Søk i DiVA

Av forfatter/redaktør
Khan, SulemanSingh, GurjotGurtov, Andrei
Av organisasjonen

Søk utenfor DiVA

GoogleGoogle Scholar

doi
isbn
urn-nbn

Altmetric

doi
isbn
urn-nbn
Totalt: 175 treff
RefereraExporteraLink to record
Permanent link

Direct link
Referera
Referensformat
  • apa
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • oxford
  • Annet format
Fler format
Språk
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Annet språk
Fler språk
Utmatningsformat
  • html
  • text
  • asciidoc
  • rtf