Secure Positioning and Localization


Despite global navigation systems, such as GPS and Galileo, having been widely used for almost two decades, these systems are still vulnerable to signal spoofing attacks. This has become evident in serious incidents, most prominently the hijacking of a US military drone over Iranian territory in 2011. However, location manipulation attacks also pose a risk in existing and future civilian navigation applications, such as autonomous driving.

In the context of proximity verification, systems for unlocking cars have been attacked by relaying signals between key and door, in the worst case allowing an attacker to steal a car. Since its first demonstration almost ten years ago, this and similar attacks were in the news multiple times, both as research efforts but also actual thefts. Contributing to the latter trend is the fact that equipment for signal generation is becoming more accessible. Today, it is simpler than ever for an attacker to mount attacks on ranging signals, due to very versatile, programmable signal generation equipment, such as USRPs, becoming cheaper and easier to use. As location information becomes ever more critical in the future due to the increasing prevalence of cyber-physical systems, secure design becomes vital on all protocol layers. This includes how a device measures proximity and location on the physical layer, i.e., on the level of signals.

Our research is concerned with designing localization and proximity-verification systems based on wireless signals that are secure against any known distance-modifying attacker, irrespective of its hardware. We also direct our efforts toward understanding the impact of attacks on existing systems, such as GPS or next-generation air traffic control, and making those systems more robust. Finally, there is an incentive to augment existing systems and protocols with this robust notion of location and proximity, as an added factor for security, such as for authentication in the web.

