Such a network protocol was considered a safe for more than 10 years due to a design that prevents two types of traffic to conflict with each other. However, the researchers have conducted a unique attack called PCSPOOF, which violated the "peaceful" coexistence of devices in one network. During the experiment, they launched a test for asteroids redirecting the NASA equipment to prevent collision with the ground.
The experimental installation managed a simulated capsule with a crew that had to stretch out with a robotic ship. Using a small virus device, cybersecurity experts managed to introduce several messages that caused a series of conflicts - as a result of the capsule, they deviated from the course and lost.
As experts explained, the attack emulates network switches that act as key traffic controllers on TTE networks, sending them the erroneous synchronization messages required for the orderly work of all devices on the network and rapid exchange of data between the most important systems. Usually, such messages can only be sent a network switch, so the researchers have "drowned" it with electromagnetic interference through Ethernet.
The fake message slipped into the formed "window" and displaced the whole system. "After starting the TTE device, they will start to lose synchronization from time to time and repeatedly reconnect," said Andrew Lales, a doctoral student in the field of computers from the Johnson Space Center. According to experts, the failure will lead to delay or complete removal of urgent messages, so all systems will start working unforeseen, which is threatened with a disaster.
However, they have already invented how to prevent the threat - it is enough to replace the copper cable with a fiber or to install optical insulators between switches and unreliable devices. Such measures prevent obstacles, although they can increase the cost or reduce the productivity of the equipment. In addition, you can process the network scheme so that harmful messages can not come with the same channels as the real ones.
Researchers have warned of the vulnerability of large companies and organizations using TTE, as well as manufacturers of network equipment. According to Andrew Lawless, everyone listened to them and took measures to mitigate the consequences. "As far as we know, there is no threat to this attack at this time," the scientist emphasized. Earlier, Iran hackers broke the US government network and forced the cryptocurrency.
Všetky práva vyhradené IN-Ukraine.info - 2022