{"title":"Confidentiality attacks against encrypted control systems","authors":"A. Naseri, Walter Lucia, Amr Youssef","doi":"10.1080/23335777.2022.2051209","DOIUrl":null,"url":null,"abstract":"ABSTRACT Encrypted control systems were introduced to enhance the security of cyber-physical systems, which outsource control action computations to a third-party platform. To protect the confidentiality of the transmitted data, homomorphic encryption schemes are particularly appealing for their capability of allowing computations on encrypted data. By considering the popular ElGamal and Paillier encryption schemes, this paper shows that encrypted control systems are vulnerable to attackers leveraging the inherently small domains of the plaintext data in control systems and the randomisation process required to make the utilised ciphers semantically secure. Finally, we present some countermeasures to defend against these attacks.","PeriodicalId":37058,"journal":{"name":"Cyber-Physical Systems","volume":"14 1","pages":"224 - 243"},"PeriodicalIF":0.0000,"publicationDate":"2022-03-28","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"2","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"Cyber-Physical Systems","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1080/23335777.2022.2051209","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"Q2","JCRName":"Engineering","Score":null,"Total":0}
引用次数: 2
Abstract
ABSTRACT Encrypted control systems were introduced to enhance the security of cyber-physical systems, which outsource control action computations to a third-party platform. To protect the confidentiality of the transmitted data, homomorphic encryption schemes are particularly appealing for their capability of allowing computations on encrypted data. By considering the popular ElGamal and Paillier encryption schemes, this paper shows that encrypted control systems are vulnerable to attackers leveraging the inherently small domains of the plaintext data in control systems and the randomisation process required to make the utilised ciphers semantically secure. Finally, we present some countermeasures to defend against these attacks.