Skip to main content

Showing 1–12 of 12 results for author: Staat, P

.
  1. arXiv:2503.14279  [pdf, other

    cs.CR

    Anti-Tamper Radio meets Reconfigurable Intelligent Surface for System-Level Tamper Detection

    Authors: Maryam Shaygan Tabar, Johannes Kortz, Paul Staat, Harald Elders-Boll, Christof Paar, Christian Zenger

    Abstract: Many computing systems need to be protected against physical attacks using active tamper detection based on sensors. One technical solution is to employ an ATR (Anti-Tamper Radio) approach, analyzing the radio wave propagation effects within a protected device to detect unauthorized physical alterations. However, ATR systems face key challenges in terms of susceptibility to signal manipulation att… ▽ More

    Submitted 18 March, 2025; originally announced March 2025.

  2. arXiv:2412.13352  [pdf, other

    cs.CR

    Key Exchange in the Quantum Era: Evaluating a Hybrid System of Public-Key Cryptography and Physical-Layer Security

    Authors: Paul Staat, Meik Dörpinghaus, Azadeh Sheikholeslami, Christof Paar, Gerhard Fettweis, Dennis Goeckel

    Abstract: Today's information society relies on cryptography to achieve security goals such as confidentiality, integrity, authentication, and non-repudiation for digital communications. Here, public-key cryptosystems play a pivotal role to share encryption keys and create digital signatures. However, quantum computers threaten the security of traditional public-key cryptosystems as they can tame computatio… ▽ More

    Submitted 17 December, 2024; originally announced December 2024.

  3. Spatial-Domain Wireless Jamming with Reconfigurable Intelligent Surfaces

    Authors: Philipp Mackensen, Paul Staat, Stefan Roth, Aydin Sezgin, Christof Paar, Veelasha Moonsamy

    Abstract: Wireless communication infrastructure is a cornerstone of modern digital society, yet it remains vulnerable to the persistent threat of wireless jamming. Attackers can easily create radio interference to overshadow legitimate signals, leading to denial of service. The broadcast nature of radio signal propagation makes such attacks possible in the first place, but at the same time poses a challenge… ▽ More

    Submitted 17 December, 2024; v1 submitted 21 February, 2024; originally announced February 2024.

  4. arXiv:2312.06195  [pdf, other

    cs.CR

    Stealing Maggie's Secrets -- On the Challenges of IP Theft Through FPGA Reverse Engineering

    Authors: Simon Klix, Nils Albartus, Julian Speith, Paul Staat, Alice Verstege, Annika Wilde, Daniel Lammers, Jörn Langheinrich, Christian Kison, Sebastian Sester-Wehle, Daniel Holcomb, Christof Paar

    Abstract: Intellectual Property (IP) theft is a cause of major financial and reputational damage, reportedly in the range of hundreds of billions of dollars annually in the U.S. alone. Field Programmable Gate Arrays (FPGAs) are particularly exposed to IP theft, because their configuration file contains the IP in a proprietary format that can be mapped to a gate-level netlist with moderate effort. Despite th… ▽ More

    Submitted 3 September, 2024; v1 submitted 11 December, 2023; originally announced December 2023.

    Comments: Extended version of ACM CCS'24 paper including appendices

  5. arXiv:2303.07015  [pdf, ps, other

    cs.IT

    RIS-Jamming: Breaking Key Consistency in Channel Reciprocity-based Key Generation

    Authors: Guyue Li, Paul Staat, Haoyu Li, Markus Heinrichs, Christian Zenger, Rainer Kronberger, Harald Elders-Boll, Christof Paar, Aiqun Hu

    Abstract: Channel Reciprocity-based Key Generation (CRKG) exploits reciprocal channel randomness to establish shared secret keys between wireless terminals. This new security technique is expected to complement existing cryptographic techniques for secret key distribution of future wireless networks. In this paper, we present a new attack, reconfigurable intelligent surface (RIS) jamming, and show that an a… ▽ More

    Submitted 10 April, 2024; v1 submitted 13 March, 2023; originally announced March 2023.

    Comments: 15 pages, 14 figures

  6. arXiv:2202.06554  [pdf, other

    cs.CR

    Analog Physical-Layer Relay Attacks with Application to Bluetooth and Phase-Based Ranging

    Authors: Paul Staat, Kai Jansen, Christian Zenger, Harald Elders-Boll, Christof Paar

    Abstract: Today, we use smartphones as multi-purpose devices that communicate with their environment to implement context-aware services, including asset tracking, indoor localization, contact tracing, or access control. As a de-facto standard, Bluetooth is available in virtually every smartphone to provide short-range wireless communication. Importantly, many Bluetooth-driven applications such as Phone as… ▽ More

    Submitted 4 April, 2022; v1 submitted 14 February, 2022; originally announced February 2022.

    Comments: Accepted for presentation at WiSec '22

  7. arXiv:2112.10043  [pdf, other

    cs.IT

    Reconfigurable Intelligent Surface for Physical Layer Key Generation: Constructive or Destructive?

    Authors: Guyue Li, Lei Hu, Paul Staat, Harald Elders-Boll, Christian Zenger, Christof Paar, Aiqun Hu

    Abstract: Physical layer key generation (PKG) is a promising means to provide on-the-fly shared secret keys by exploiting the intrinsic randomness of the radio channel. However, the performance of PKG is highly dependent on the propagation environments. Due to its feature of controlling the wireless environment, reconfigurable intelligent surface~(RIS) is appealing to be applied in PKG. In this paper, in co… ▽ More

    Submitted 7 April, 2022; v1 submitted 18 December, 2021; originally announced December 2021.

    Comments: 7 pages, 5 figures

  8. arXiv:2112.09014  [pdf, other

    cs.CR

    Anti-Tamper Radio: System-Level Tamper Detection for Computing Systems

    Authors: Paul Staat, Johannes Tobisch, Christian Zenger, Christof Paar

    Abstract: A whole range of attacks becomes possible when adversaries gain physical access to computing systems that process or contain sensitive data. Examples include side-channel analysis, bus probing, device cloning, or implanting hardware Trojans. Defending against these kinds of attacks is considered a challenging endeavor, requiring anti-tamper solutions to monitor the physical environment of the syst… ▽ More

    Submitted 16 December, 2021; originally announced December 2021.

  9. arXiv:2112.01967  [pdf, other

    cs.CR

    IRShield: A Countermeasure Against Adversarial Physical-Layer Wireless Sensing

    Authors: Paul Staat, Simon Mulzer, Stefan Roth, Veelasha Moonsamy, Markus Heinrichs, Rainer Kronberger, Aydin Sezgin, Christof Paar

    Abstract: Wireless radio channels are known to contain information about the surrounding propagation environment, which can be extracted using established wireless sensing methods. Thus, today's ubiquitous wireless devices are attractive targets for passive eavesdroppers to launch reconnaissance attacks. In particular, by overhearing standard communication signals, eavesdroppers obtain estimations of wirele… ▽ More

    Submitted 7 April, 2022; v1 submitted 3 December, 2021; originally announced December 2021.

  10. arXiv:2107.01709  [pdf, other

    cs.CR

    Mirror Mirror on the Wall: Wireless Environment Reconfiguration Attacks Based on Fast Software-Controlled Surfaces

    Authors: Paul Staat, Harald Elders-Boll, Markus Heinrichs, Christian Zenger, Christof Paar

    Abstract: The intelligent reflecting surface (IRS) is a promising new paradigm in wireless communications for meeting the growing connectivity demands in next-generation mobile networks. IRS, also known as software-controlled metasurfaces, consist of an array of adjustable radio wave reflectors, enabling smart radio environments, e.g., for enhancing the signal-to-noise ratio (SNR) and spatial diversity of w… ▽ More

    Submitted 3 August, 2021; v1 submitted 4 July, 2021; originally announced July 2021.

  11. Full-Duplex meets Reconfigurable Surfaces: RIS-assisted SIC for Full-Duplex Radios

    Authors: Simon Tewes, Markus Heinrichs, Paul Staat, Rainer Kronberger, Aydin Sezgin

    Abstract: Reconfigurable intelligent surfaces (RIS) are a key enabler of various new applications in 6G smart radio environments. By utilizing an RIS prototype system, this paper aims to enhance self-interference (SI) cancellation for in-band full-duplex (FD) communication systems. SI suppression is a crucial requirement for FD communication as the SI severely limits the performance of a node by shadowing t… ▽ More

    Submitted 4 March, 2022; v1 submitted 26 May, 2021; originally announced May 2021.

    Comments: 6 pages, 9 figures, Accepted for publication in IEEE International Conference on Communications (ICC) 2022

    Journal ref: IEEE International Conference on Communications (ICC) 2022

  12. arXiv:2010.06613  [pdf, other

    cs.CR eess.SP

    Intelligent Reflecting Surface-Assisted Wireless Key Generation for Low-Entropy Environments

    Authors: Paul Staat, Harald Elders-Boll, Markus Heinrichs, Rainer Kronberger, Christian Zenger, Christof Paar

    Abstract: Physical layer key generation is a promising candidate for cryptographic key establishment between two wireless communication parties. It offers information-theoretic security and is an attractive alternative to public-key techniques. Here, the inherent randomness of wireless radio channels is used as a shared entropy source to generate cryptographic key material. However, practical implementation… ▽ More

    Submitted 6 March, 2021; v1 submitted 13 October, 2020; originally announced October 2020.