Zaɓi Harshe

WISERS: Harin Hanyar Geɓe Ba tare da Lamba ba ta hanyar Kururuwar Na'urar Caji ta Maras Igiya da Karkatarwar Magnetic

Bincike kan WISERS, sabon nau'in harin hanyar geɓe wanda ke tantance ayyukan mai amfani na wayar hannu ta hanyar lura da kururuwar na'urar caji ta maras igiya da karkatarwar filin magnetic.
wuxianchong.com | PDF Size: 3.5 MB
Kima: 4.5/5
Kimarku
Kun riga kun ƙididdige wannan takarda
Murfin Takardar PDF - WISERS: Harin Hanyar Geɓe Ba tare da Lamba ba ta hanyar Kururuwar Na'urar Caji ta Maras Igiya da Karkatarwar Magnetic

Teburin Abubuwan Ciki

1. Gabatarwa

Caji maras igiya, musamman ma'aunin Qi, ya zama ruwan dare a wayoyin hannu na zamani. Wannan takarda ta gabatar da sabon nau'in harin hanyar geɓe da ba a taɓa shi ba mai suna WISERS (Tsarin Lura na Caji Maras Igiya). Ba kamar harin da suka gabata waɗanda ke buƙatar samun damar jiki ko na'urori da aka lalata ba, WISERS yana amfani da abubuwan jiki guda biyu na asali—kururuwar na'ura da karkatarwar filin magnetic—waɗanda ake fitarwa yayin canja wurin wutar lantarki don tantance cikakkun hulɗar mai amfani akan wayar hannu da ake caji, kamar shigar da lambar sirri da kaddamar da aikace-aikace.

2. Tsarin Harin WISERS

WISERS yana aiki ta hanyar haɗa canje-canje a cikin ɗaukar wutar wayar hannu (wanda ke haifar da canjin abun ciki na allo yayin shigar mai amfani) tare da fitar da abubuwan jiki da za a iya auna daga na'urar caji ta hanyar ƙarfafa wutar lantarki.

2.1 Amfani da Abubuwan Jiki

  • Kururuwar Na'ura: Ƙarar sauti da ke haifar da magnetostriction da tasirin piezoelectric a cikin na'urar saboda sauyin wutar lantarki (AC).
  • Karkatarwar Filin Magnetic: Canje-canje a cikin ƙarfin filin magnetic na gida da tsari da ke haifar da sauyin wutar lantarki a cikin na'urar caji, kamar yadda Dokar Ampere ta bayyana.

2.2 Tsarin Harin Matakai Uku

  1. Hankali & Saitawa: Yana auna siffofi na yanayi (misali, matakin baturi na farko) don daidaita harin.
  2. Ƙaddamarwa Tsakanin Mu'amala: Yana amfani da tsarin kururuwar na'ura don gano sauye-sauye tsakanin allo/tsarin mu'amala daban-daban na wayar.
  3. Ƙaddamarwa Cikin Aiki: Yana nazarin karkatarwar filin magnetic don gane takamaiman ayyuka a cikin mu'amala (misali, dannawa akan maɓallan maɓalli na taushi).

Ma'auni Mafi Muhimmanci na Aiki

Daidaiton Harin: >90.4% don tantance bayanan sirri (misali, lambobin sirri).

Kewayon Tasiri: Har zuwa 20cm (8 inci) daga abin da ake hari.

Matakin Baturi: Yana aiki ko da lokacin da baturi ya kasance ƙasa da 80%, yana shawo kan babban iyaka na aikin da ya gabata.

3. Cikakkun Bayanai na Fasaha & Tsarin Lissafi

Babban ka'idar jiki ita ce Dokar Ƙarfin Ampere. Ƙarfin ($\vec{F}$) akan mai ɗaukar wutar lantarki (na'urar) a cikin filin magnetic shine:

$\vec{F} = I (\vec{L} \times \vec{B})$

Inda $I$ shine wutar lantarki, $\vec{L}$ shine tsawon mai ɗaukar wutar lantarki, kuma $\vec{B}$ shine filin magnetic. Hulɗar mai amfani tana canza ɗaukar wutar wayar hannu ($\Delta I$), yana canza wutar lantarki a cikin na'urar caji. Wannan canjin $I$ yana daidaita ƙarfin $\vec{F}$, yana haifar da ƙananan girgiza jiki (kururuwar na'ura) da karkata a cikin filin magnetic da ake fitarwa $\vec{B}$.

Harin da gaske yana yin bincike na siginar tsarin modal, yana tsara waɗannan daidaitawar siginar jiki ($S_{whine}(t)$, $S_{mag}(t)$) zuwa ga abubuwan hulɗar mai amfani ($E_{user}$).

4. Sakamakon Gwaji & Kimantawa

An gudanar da gwaje-gwaje masu yawa ta amfani da shahararrun wayoyin hannu da na'urorin caji na Kasuwa Ba tare da Saitawa ba (COTS).

4.1 Daidaito & Ma'aunin Aiki

Tsarin ya nuna babban daidaito a cikin tantance shigarwa daban-daban da ci gaba:

  • Lambobin Sirri na Buɗe Allo: Daidaiton ƙaddamarwa ya wuce 90.4% don lambobin PIN na lambobi.
  • Gano Kaddamar da Aikace-aikace: Babban nasarar gano wane aikace-aikace aka buɗe daga allo na gida.
  • Lokacin Dannawa: Iya gane tsarin lokaci tsakanin dannawa akan maɓallan maɓalli na taushi.

Bayanin Chati: Chati na hasashe zai nuna "Yawan Nasarar Harin (%)" akan Y-axis a kan "Nau'in Bayanan da aka Ƙaddamar" (Lambar Sirri, Kaddamar da Aikace-aikace, Dannawa) akan X-axis, tare da duk sanduna sama da alamar 90%.

4.2 Juriya ga Abubuwan Tasiri

An gwada WISERS akan abubuwan rikice-rikice daban-daban kuma ya nuna juriya ga:

  • Samfuran wayoyin hannu daban-daban da alamun na'urorin caji.
  • Matakan ƙarar sauti na yanayi daban-daban (don hankalin sauti).
  • Kasancewar wasu na'urorin lantarki da ke haifar da ƙananan tsangwama na magnetic.

5. Tsarin Bincike & Misalin Lamari

Yanayi: Tantance PIN na lambobi 4 yayin buɗe allo.

  1. Samun Siginar: Na'urar mai kai hari (misali, wata wayar hannu tare da na'urori masu dacewa) da aka sanya a cikin 20cm tana rikodin sauti (ta hanyar makirufo) da bayanan filin magnetic (ta hanyar magnetometer) yayin ƙoƙarin buɗewa na wanda aka azabtar.
  2. Cire Siffofi: Ana sarrafa siginar sauti don ware ɓangaren kururuwar na'ura. Ana tace bayanan magnetic don haskaka karkata a cikin kewayon ƙananan mitar da ya dace da canje-canjen ɗaukar wutar lantarki.
  3. Daidaita Tsari & Ƙaddamarwa: Tsarin yana haɗa siffofin siginar da aka cire tare da samfurin da aka riga aka horar. An gano "fashe-fashe" daban-daban na karkatarwar magnetic guda huɗu, kowanne yana haɗe tare da takamaiman canjin sa hannun sauti, kuma an tsara su zuwa dannawar lambobi huɗu na PIN. Jerin da lokacin sun bayyana lambar sirri.

6. Fahimtar Jigo & Ra'ayi na Mai Bincike

Fahimtar Jigo: WISERS ba wani harin hanyar geɓe kawai ba ne; yana nuna jikinsa na tsaro na dijital. Yana amfani da ainihin, kawar da ilimin kimiyyar lissafi na ƙarfafa wutar lantarki—tsarin da aka tsara don sauƙi—zuwa kayan aikin sa ido mai ƙarfi. Kyawun harin yana cikin rashin aiki; ba ya shigar da malware ko kutsa bayanai, kawai yana ji da jin tattaunawar jiki na na'urar tare da na'urar cajinta.

Tsarin Hankali: Hankalin binciken ba shi da lahani. Ya fara ne daga wani abin takaici na injiniya da aka sani (kururuwar na'ura) da kuma babban doka (Dokar Ampere), yana lura da daidaitawar su ta hanyar nauyin tsarin, kuma yana bin wannan daidaitawar zuwa canje-canjen nauyin da mai amfani ya haifar. Tsarin matakai uku ya raba matsala sosai: daidaitawa, mahallin macro (sauye-sauyen allo), da mahallin micro (dannawa). Wannan tsarin yana tunatar da tsarin harin da ya yi nasara a wasu fagage, kamar tsarin tsarin zuwa hanyoyin geɓe na tushen cache da aka zayyana a cikin ayyuka kamar "Cache-timing attacks on AES" na Bernstein.

Ƙarfi & Kurakurai: Ƙarfinsa shine amfaninsa mai ban tsoro—ta amfani da kayan aikin COTS, ba ya buƙatar lalata na'ura, kuma yana aiki a ƙarƙashin zato da aka sani a baya (baturi >80%). Kurakuransa, duk da haka, shine dogaro da kusanci (~20cm). Duk da yake babban barazana a cikin gidajen kofi ko ofisoshi masu cunkoso, ba cin zarafi ne na nesa ba. Duk da haka, wannan siffa ce, ba kuskure ba, don leƙen asiri da aka yi niyya. Wani mafi mahimmanci kurakuri shine mayar da hankali ga kimantawa akan saitunan da aka sarrafa. Yanayin duniya na gaske tare da na'urori da yawa da ake caji lokaci guda ko ƙananan filayen magnetic (misali, kusa da kayan aikin masana'antu) na iya rage aiki sosai, ƙalubale da sauran hanyoyin geɓe na hankali kamar harin maɓallan maɓalli na sauti suke fuskanta.

Fahimtar Aiki: Ga al'ummar tsaro, wannan wuta ce ta ƙarfe biyar ga masana'antar IoT da wayar hannu. Dole ne maganin ya wuce software. Masu zanen kayan aiki suna buƙatar yin la'akari da juriya ga hanyar geɓe ta electromagnetic da sauti a matsayin buƙatar zane. Hanyoyin magancewa masu yuwuwa sun haɗa da: (1) Maganin Ƙarar Sauti Mai Aiki: Saka na'urori masu aiki a cikin na'urorin caji don fitar da siginar anti-phase don soke kururuwar na'ura. (2) Rufe Nauyin Wutar Lantarki: Gabatar da ƙananan sauyi na bazuwar a cikin ɗaukar wutar lantarki yayin lokutan zaman banza don rufe canje-canjen da mai amfani ya haifar, kama da siffanta zirga-zirga a cikin tsarin rashin sanin suna na cibiyar sadarwa kamar Tor. (3) Kariya: Haɗa kayan kariya na magnetic a cikin akwatunan na'urar caji, ko da yake wannan na iya tasiri a kan inganci. Ƙungiyoyin daidaita ma'auni kamar Ƙungiyar Wutar Lantarki Maras Igiya (WPC) dole ne su sabunta ƙayyadaddun Qi cikin gaggawa don haɗa da gwaje-gwajen zubar da hanyar geɓe.

7. Ayyukan Gaba & Hanyoyin Bincike

  • Hankalin Kewayon da aka Ƙara: Bincike cikin na'urori masu hankali (misali, magnetometers masu inganci) ko dabarun haɓaka siginar don ƙara tazarar harin mai tasiri.
  • Ƙaddamarwa Tsakanin Na'ura: Bincika ko "sawun" magnetic ya keɓanta sosai don gano takamaiman amfani da aikace-aikace ko ma ayyukan bincike na gidan yanar gizo a cikin burauza.
  • Koyon Injin Kariya: Haɓaka samfuran ML akan-na'ura ko akan-na'urar caji waɗanda zasu iya gano takamaiman tsarin siginar na ƙoƙarin leƙen asiri mai kama da WISERS kuma su haifar da faɗakarwa ko hanyar magancewa.
  • Maƙasudin Maƙasudi Mai Faɗi: Yin amfani da ƙa'idodi iri ɗaya ga sauran na'urori da ake caji maras igiya kamar 'yan kunne na gaskiya, agogon waya, ko ma kwamfutocin hannu na gaba, waɗanda zasu iya samun ƙarin mu'amalar mai amfani.
  • Haɗawa da Sauran Hanyoyin Geɓe: Haɗa bayanai daga wannan hanyar geɓe tare da wasu (misali, binciken wutar lantarki daga manyan hanyoyin wutar lantarki, fitar da zafi) don ƙarin ƙarfi da cikakkun bayanai game da mai amfani, hanyar da'irori da yawa da ke samun karbuwa a cikin binciken hanyar geɓe.

8. Nassoshi

  1. Ƙungiyar Wutar Lantarki Maras Igiya. "The Qi Wireless Power Standard." [Online]. Available: https://www.wirelesspowerconsortium.com/
  2. Bernstein, D. J. "Cache-timing attacks on AES." 2005.
  3. Genkin, D., Shamir, A., & Tromer, E. (2014). "RSA key extraction via low-bandwidth acoustic cryptanalysis." In Advances in Cryptology–CRYPTO 2014.
  4. Zhu, J., Park, T., Isola, P., & Efros, A. A. (2017). "Unpaired image-to-image translation using cycle-consistent adversarial networks." In Proceedings of the IEEE international conference on computer vision (CycleGAN).
  5. Cibiyar Ma'auni da Fasaha ta Ƙasa (NIST). "Hanyoyin Gwajin Harin Hanyar Geɓe." [Online]. Available: https://csrc.nist.gov/
  6. Zhang, Y., et al. "WISERS: A Contactless and Context-Aware Side-Channel Attack via Wireless Charging." In Proceedings of the ... IEEE Symposium on Security and Privacy, 2023. (Takardar tushen da aka bincika).