Högskolan i Skövde

his.sePublications
Change search
CiteExportLink to record
Permanent link

Direct link
Cite
Citation style
  • apa
  • apa-cv
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Other style
More styles
Language
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Other locale
More languages
Output format
  • html
  • text
  • asciidoc
  • rtf
Security Issues in Special-Purpose Digital Radio Communication Systems: A Systematic Review
University of Skövde, School of Informatics. University of Skövde, Informatics Research Environment. Department of Systems Science for Defence and Security, Swedish Defence University, Stockholm, Sweden. (Information Systems (IS))ORCID iD: 0000-0001-9246-0263
2024 (English)In: IEEE Access, E-ISSN 2169-3536, Vol. 12, p. 91101-91126Article, review/survey (Refereed) Published
Abstract [en]

For applications where general-purpose communication systems, such as mobile telephony, do not satisfy user requirements, special-purpose digital wireless communication standards have been developed. Since these systems often support critical infrastructures, security issues can have far-reaching consequences. To study the extent of research on security issues in specialized communication standards, a systematic literature review was performed, using snowballing to maximize coverage. The found publications cover security issues in radio communication systems for three major areas: civil transportation, public safety and security, and telephony and satellite communication systems. The main results from the included publications are summarized. This is followed by an analysis that presents five common themes among the security issues: lack of encryption, lack of authentication, broken encryption, protocol vulnerabilities, and implementation vulnerabilities. Research tools and methods used across the different technology fields are systematized, showing that software-defined radio and open-source software appear to be enablers of research on the communication standards covered by the review. The systematization also reveals that the application of research methods to different standards is spotty. Finally, numerous open research directions are pointed out, including the need for more holistic research that goes beyond just finding technical flaws in single standards.

Place, publisher, year, edition, pages
IEEE, 2024. Vol. 12, p. 91101-91126
Keywords [en]
Critical infrastructure, cybersecurity, radio communication systems, security, standards, systematic review.
National Category
Information Systems
Research subject
Information Systems
Identifiers
URN: urn:nbn:se:his:diva-24218DOI: 10.1109/access.2024.3420091ISI: 001263417100001Scopus ID: 2-s2.0-85197047158OAI: oai:DiVA.org:his-24218DiVA, id: diva2:1882567
Note

CC BY-NC-ND 4.0

Available from: 2024-07-05 Created: 2024-07-05 Last updated: 2026-02-03Bibliographically approved
In thesis
1. Understanding Security in Special-Purpose Digital Radio Communication Systems
Open this publication in new window or tab >>Understanding Security in Special-Purpose Digital Radio Communication Systems
2025 (English)Doctoral thesis, comprehensive summary (Other academic)
Abstract [en]

Activities that have specialized communication needs which cannot be met by general communication systems such as mobile telephony or wireless networking need specialized communication systems. The thesis investigates the special-purpose digital radio communication systems that have been created to meet specialized needs across a range of fields. Since many of the fields where these communication systems are used are part of critical infrastructures and other important operations, the security of the communication systems may be vital to the security of the operations they support. Despite this, special-purpose digital radio communication systems often have significantly lower levels of security than more commonly used systems, such as mobile telephony or Internet-based protocols. The thesis defines special-purpose digital radio communication systems as a class of systems that, while differing in many ways, have common security properties. The common security themes among the different systems are investigated through focused case studies on two standards: Automatic Link Establishment (ALE) for high-frequency radio and TETRA, a trunked cellular professional mobile radio standard. The case study on ALE uses cryptanalysis to find weaknesses in the cryptography specified by the standard, mirroring similar weaknesses in other standards. In the TETRA case, qualitative interviews reveal how organizations that own TETRA networks make security-related decisions regarding them. The thesis proposes a number of possible explanations for the low level of security in special-purpose digital radio communication systems: lack of security by design, deficient understanding of system dependencies, normal accident dynamics, lack of feedback, and market structure. The thesis is the first to consider the different standards as members of a single class of systems and point out the commonalities.

Abstract [sv]

Verksamheter vars kommunikationsbehov inte tillfredsställs av generella kommunikationssystem som exempelvis mobiltelefoni eller trådlösa nätverk behöver särskilda kommunikationssystem. Avhandlingen undersöker de digitala radiokommunikationssystem för särskilda ändamål som skapats för att möta de särskilda kommunikationsbehov som finns i många områden. Eftersom flera av de områden som använder de ifrågavarande kommunikationssystemen är del av kritiska infrastrukturer eller andra viktiga verksamheter är säkerhet i kommunikationssystemen av vikt för säkerheten i verksamheterna som helhet. Trots detta har digitala radiokommunikationssystem för särskilda behov ofta signifikant lägre säkerhetsnivå än mer spridda system, som exempelvis internetbaserade protokoll. Avhandlingen definierar digitala radiokommunikationssystem för särskilda behov som en grupp system som, trots att de är olika på många sätt, delar gemensamma säkerhetsegenskaper. De gemensamma egenskaperna undersöks genom fallstudier på två standarder: Automatic Link Establishment (ALE), en standard för länketablering för kortvågsradio, och TETRA, en standard för trunkad cellulär kommunikationsradio. I fallstudien av ALE används kryptoanalys för att upptäcka svagheter i kryptografiska funktioner som specificeras i standarden, vilket återspeglar liknande sårbarheter i andra standarder. I fallet med TETRA används kvalitativa intervjuer för att visa hur organisationer som äger TETRA-nätverk tar säkerhetsrelaterade beslut rörande dem. Avhandlingen föreslår ett antal möjliga förklaringar för den låga säkerhetsnivån i digitala radiokommunikationssystem för särskilda behov: ingen inbyggd säkerhet, bristande förståelse för systemberoenden, systemolyckedynamik, brist på återkoppling och marknadsstruktur. Avhandlingen är den första som behandlar de olika standarderna som tillhörande en enda grupp av system och att identifiera likheterna.

Place, publisher, year, edition, pages
Skövde: University of Skövde, 2025. p. xvi, 188
Series
Dissertation Series ; 68
National Category
Information Systems
Research subject
Information Systems
Identifiers
urn:nbn:se:his:diva-26139 (URN)978-91-989080-9-1 (ISBN)978-91-989081-0-7 (ISBN)
Public defence
2026-04-14, L52, Drottning Kristinas väg 30, Stockholm, 13:00 (English)
Opponent
Supervisors
Available from: 2026-02-04 Created: 2026-02-03 Last updated: 2026-02-04Bibliographically approved

Open Access in DiVA

fulltext(3803 kB)792 downloads
File information
File name FULLTEXT01.pdfFile size 3803 kBChecksum SHA-512
9eabafd6cd245da8ea43e150f69d0f9749481f07bcd71fbd72c753e67e36345b7575d8ccd18e56f5ebd84c3e80f0eda7ab5b34cada5de497f1400e3eef58c953
Type fulltextMimetype application/pdf

Other links

Publisher's full textScopus

Authority records

Dansarie, Marcus

Search in DiVA

By author/editor
Dansarie, Marcus
By organisation
School of InformaticsInformatics Research Environment
In the same journal
IEEE Access
Information Systems

Search outside of DiVA

GoogleGoogle Scholar
Total: 796 downloads
The number of downloads is the sum of all downloads of full texts. It may include eg previous versions that are now no longer available

doi
urn-nbn

Altmetric score

doi
urn-nbn
Total: 629 hits
CiteExportLink to record
Permanent link

Direct link
Cite
Citation style
  • apa
  • apa-cv
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Other style
More styles
Language
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Other locale
More languages
Output format
  • html
  • text
  • asciidoc
  • rtf