Search papers, labs, and topics across Lattice.
This paper identifies vulnerabilities in existing authentication schemes for Low Earth Orbit (LEO) satellites, revealing that multi-device attackers can achieve false positive rates of up to 40%. To address this, the authors introduce Chi-MERA, which employs multilateration (MLAT) to effectively differentiate between legitimate satellites and attackers, alongside a resilient signature scheme that eliminates reliance on a single reference receiver. The proposed method significantly enhances authentication performance, achieving a false positive rate of less than 2% and a false negative rate of less than 3%, while demonstrating linear scalability against spoofing attacks.
Multi-device attackers can exploit vulnerabilities in LEO satellite authentication, but Chi-MERA reduces false positives to under 2% while scaling effectively against spoofing.
An active research area, physical layer security can be a last resort in insecure legacy systems, a resource-efficient alternative, or a complementary backup for cryptographic techniques. In this paper, we demonstrate that previously established authentication schemes for LEO satellites are vulnerable to attackers that control multiple devices. In extensive experiments, such attackers produce false positive rates (FPR) of up to 40%. Based on a root cause analysis, we develop a novel scheme, called Chi-MERA, that improves authentication performance and is robust against multi-device attackers. Our scheme uses two enhancements: (1) multilateration (MLAT) to clearly distinguish between attackers and legitimate satellites, and (2), a new resilient signature scheme without dependency on a single dedicated reference receiver. Our evaluation shows that exploiting MLAT characteristics such as residual analysis to classify vastly different signal source categories (orbit vs. non-orbit) is highly effective. In extensive simulations, we show that the new authentication achieves low FPR of $<$2% and false negative rates of $<$3% for accidentally rejecting valid signals. Furthermore, our scheme's defense scales linearly: $n$ receivers reliably withstand spoofing (FPR $<1%$) from attackers with $\frac{n}{2}$ devices.