liu.seSök publikationer i DiVA
Ändra sökning
RefereraExporteraLänk till posten
Permanent länk

Direktlänk
Referera
Referensformat
  • apa
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • oxford
  • Annat format
Fler format
Språk
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Annat språk
Fler språk
Utmatningsformat
  • html
  • text
  • asciidoc
  • rtf
Enhancing Cybersecurity for LDACS: a Secure and Lightweight Mutual Authentication and Key Agreement Protocol
Linköpings universitet, Institutionen för datavetenskap, Databas och informationsteknik. Linköpings universitet, Tekniska fakulteten.
Linköpings universitet, Institutionen för datavetenskap, Databas och informationsteknik. Linköpings universitet, Tekniska fakulteten.
Linköpings universitet, Institutionen för datavetenskap, Databas och informationsteknik. Linköpings universitet, Tekniska fakulteten.ORCID-id: 0000-0002-9829-9287
German Aerosp Ctr DLR, Germany.
Visa övriga samt affilieringar
2023 (Engelska)Ingår i: 2023 IEEE/AIAA 42ND DIGITAL AVIONICS SYSTEMS CONFERENCE, DASC, IEEE , 2023Konferensbidrag, Publicerat paper (Refereegranskat)
Abstract [en]

The aviation industry faces significant challenges due to rising global air travel demand. Frequency saturation in Air Traffic Management (ATM) leads to communication problems, necessitating the enhancement of traditional systems. The Single European Sky ATM Research (SESAR) initiative, backed by the European Commission, aims to digitize ATM, with the L-band Digital Aeronautical Communications System (LDACS) as a key component. LDACS aims to improve communication, enhance surveillance, and optimize airspace usage for safer, more efficient ATM. Although LDACS is protected against most cyberattacks, a critical security objective, anonymity, is currently overlooked. To strengthen LDACS's security, robust authentication mechanisms, Post-Quantum security, and measures to ensure aircraft anonymity are crucial. Therefore, we propose a comprehensive security framework to enhance LDACS's cybersecurity, focusing on mutual authentication and key agreement. The protocol uses Physical Unclonable Function (PUF) for robust mutual authentication and Bit-flipping Key Encapsulation (BIKE) for secure session key establishment utilizing Post-Quantum Cryptography (PQC). This framework ensures anonymity and secure communication between aircraft and ground stations while minimizing message exchange, latency, and data overhead. An informal security analysis confirms our proposed framework's potential to augment the efficiency and security of ATM operations.

Ort, förlag, år, upplaga, sidor
IEEE , 2023.
Serie
IEEE-AIAA Digital Avionics Systems Conference, ISSN 2155-7195, E-ISSN 2155-7209
Nyckelord [en]
Aviation Cybersecurity; BIKE; LDACS; PUF; Mutual Authentication and Key Exchange (MAKE)
Nationell ämneskategori
Kommunikationssystem
Identifikatorer
URN: urn:nbn:se:liu:diva-200533DOI: 10.1109/DASC58513.2023.10311307ISI: 001103267600200ISBN: 9798350333572 (digital)ISBN: 9798350333589 (tryckt)OAI: oai:DiVA.org:liu-200533DiVA, id: diva2:1832754
Konferens
IEEE/AIAA 42nd Digital Avionics Systems Conference (DASC), Barcelona, SPAIN, oct 01-05, 2023
Anmärkning

Funding Agencies|Trafikverket and Luftfartsverket under Automation Program II; Autonomous Systems and Software Program (WASP)

Tillgänglig från: 2024-01-30 Skapad: 2024-01-30 Senast uppdaterad: 2026-05-12
Ingår i avhandling
1. Secure Mobility and Authentication Protocols in Heterogeneous Aviation Data Networks
Öppna denna publikation i ny flik eller fönster >>Secure Mobility and Authentication Protocols in Heterogeneous Aviation Data Networks
2026 (Engelska)Doktorsavhandling, sammanläggning (Övrigt vetenskapligt)
Abstract [en]

Civil aviation is undergoing a transition towards digital, IP-based air–ground communication systems in order to accommodate increasing air traffic density, improve operational efficiency, and maintain safety-critical services. Within this evolution, technologies such as Controller–Pilot Data Link Communications (CPDLC), the L-band Digital Aeronautical Communications System (LDACS), and the Future Communication Infrastructure (FCI) have become key to enabling continuous data exchange between aircraft and ground systems. Despite their operational benefits, however, these systems do not yet provide security protection in a unified and consistently deployed manner across communication establishment, operational message exchange, and mobility or handover phases. In particular, guarantees related to mutual authentication, key establishment, integrity, confidentiality, and secure mobility management are not uniformly maintained across current air–ground communication environments. As a result, aviation communication systems remain exposed to replay, impersonation, message injection, man-in-the-middle (MITM), session hijacking, and denial-of-service (DoS) attacks, especially during mobility events and handover transitions, thereby posing significant risks to operational safety.

Motivated by these challenges, we develop lightweight, aviation-compatible, and formally verifiable security frameworks in this thesis to secure communication and handover across CPDLC, LDACS, and heterogeneous FCI environments. For CPDLC, the thesis introduces lightweight security mechanisms that provide mutual authentication, session key establishment, and secure handover by using Elliptic Curve Cryptography (ECC), Elliptic Curve Diffie–Hellman (ECDH), Schnorr signatures, and symmetric protection. For LDACS, the thesis strengthens security through lightweight authentication together with post-quantum-resilient key establishment and handover mechanisms. In this framework, Physically Unclonable Functions (PUFs) enable lightweight hardware-bound authentication, while the Bit-Flipping Key Encapsulation (BIKE) mechanism supports post-quantum-secure key establishment. This design reduces reliance on conventional public key infrastructure and supports secure key continuity across intra- and inter-domain scenarios. At the network level, the thesis further introduces a Host Identity Protocol (HIP)-based framework for the FCI to enable secure multi-homing and seamless mobility across heterogeneous links, including LDACS, the Aeronautical Mobile Airport Communications System (AeroMACS), and Satellite Communications (SATCOM).

To ensure that the proposed mechanisms provide rigorous security guarantees suitable for safety-critical aviation environments, the thesis complements framework design with formal security assurance. Symbolic analysis using Tamarin Prover and ProVerif is employed to establish essential properties, including authentication, key secrecy, forward secrecy, and secure handover, under strong adversary models. Overall, this thesis advances the security and robustness of both legacy and nextgeneration aviation communication systems across operational communication and mobility scenarios.

Ort, förlag, år, upplaga, sidor
Linköping: Linköping University Electronic Press, 2026. s. 81
Serie
Linköping Studies in Science and Technology. Dissertations, ISSN 0345-7524 ; 2526
Nationell ämneskategori
Säkerhet, integritet och kryptologi
Identifikatorer
urn:nbn:se:liu:diva-223884 (URN)10.3384/9789181185690 (DOI)9789181185683 (ISBN)9789181185690 (ISBN)
Disputation
2026-08-19, Ada Lovelace, B Building, Campus Valla, Linköping, 09:15 (Engelska)
Opponent
Handledare
Tillgänglig från: 2026-05-12 Skapad: 2026-05-12 Senast uppdaterad: 2026-05-12Bibliografiskt granskad

Open Access i DiVA

Fulltext saknas i DiVA

Övriga länkar

Förlagets fulltext

Sök vidare i DiVA

Av författaren/redaktören
Khan, SulemanSingh, GurjotGurtov, Andrei
Av organisationen
Databas och informationsteknikTekniska fakulteten
Kommunikationssystem

Sök vidare utanför DiVA

GoogleGoogle Scholar

doi
isbn
urn-nbn

Altmetricpoäng

doi
isbn
urn-nbn
Totalt: 175 träffar
RefereraExporteraLänk till posten
Permanent länk

Direktlänk
Referera
Referensformat
  • apa
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • oxford
  • Annat format
Fler format
Språk
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Annat språk
Fler språk
Utmatningsformat
  • html
  • text
  • asciidoc
  • rtf