The idea of someone hacking a plane in less than a minute might sound like the plot from an unrealistic Hollywood blockbuster.
But a terrifying new study has revealed how this could be achieved, using a device the size of a 10p coin.
Scientists from the University of California San Diego have developed a custom hardware device that can take over the communications between two key onboard computers.
One computer is the flight management computer, while the other is the computer that displays this flight path information in the cockpit.
To take over these crucial systems, all hackers would need to do is plug the device into a port inside the plane’s belly.
According to the researchers, an attack of this sort would take less than 60 seconds to carry out on a Boeing 737 either parked at a gate or in an airport hangar.
‘We believe we have made a strong case that time–limited physical access (e.g., 60 seconds) represents a realistic goal for a motivated attacker,’ the researchers said.
‘The consequences of even such short access can be significant (and hence worthy of attention).’
The idea of someone hacking a plane in less than a minute might sound like the plot from an unrealistic Hollywood blockbuster. But a terrifying new study has revealed how this could be achieved, using a device the size of a 10p coin
Typically, physical access to an aircraft is not considered a major cybersecurity risk.
However, in their new study, the team set out to understand whether or not an attacker with physical access to a plane could exploit its systems.
‘Our goal with this research is to alert the aviation community to this class of risks, so they may be appropriately mitigated well before they become dangerous,’ said Aaron Schulman, one of the senior authors of the work.
While studying a Boeing 737, the team discovered an unused maintenance port in the plane’s Electonics and Equipment (E&E) bay, which houses key electronic systems.
The bay can be found under the plane’s nose – and crucially, it can be reached from the ground, and isn’t locked.
‘What we found in our work, is that there’s a plug that is deep in the E&E bay, that if you open the door, and get inside, you can then touch from the ground,’ Mr Schulman explained.
‘And if you attach something to that plug, it actually gives you full control over the entire flight management computer.’
This port contains two ‘buses’ – communications systems that carry information and instructions between the flight management computer and the computer displaying the flight path information.
Scientists from the University of California, San Diego, have developed a custom hardware device that can take over the communications between two key onboard computers. One computer is the flight management computer, while the other is the computer that displays this flight path information in the cockpit
While studying a Boeing 737, the team discovered an unused maintenance port in the plane’s Electonics and Equipment (E&E) bay, which houses key electronic systems. The bay can be found under the plane’s nose – and crucially, it can be reached from the ground, and isn’t locked
These buses, called ARINC 429, operate on decades–old systems – and lack any modern security features.
For that reason, it was fairly simple for the researchers to design and build a small hardware device to take over the buses.
In simple terms, the device sends out a strong signal that can overpower genuine transmissions.
This allows it to secretly send new instructions to the plane’s computers while hiding the fact that anything has been changed.
During a demonstration, the team showed that the implant could reroute a plane in flight, or modify key data about weight, balance and temperature – which could lead to an unsafe takeoff.
‘The pilot doesn’t have any knowledge that something is going on,’ Mr Schulman said.
‘So it’s a very covert and inconspicuous type of control that you can have with this kind of attack.’
The researchers decided to focus on the Boeing 737, as it is one of the most used aircraft in the world.
However, before you panic about your next holiday, the researchers reassure that their hacking device is staying under lock and key.
Mr Schulman added: ‘All of the authors of this paper routinely travel on Boeing 737 aircraft and expect to continue doing so.’
You must be logged in to post a comment Login