{"id":"https://openalex.org/W4361803585","doi":"https://doi.org/10.1109/jiot.2023.3262873","title":"Using KNX-Based Building Automation and Control Systems for Data Exfiltration","display_name":"Using KNX-Based Building Automation and Control Systems for Data Exfiltration","publication_year":2023,"publication_date":"2023-03-29","ids":{"openalex":"https://openalex.org/W4361803585","doi":"https://doi.org/10.1109/jiot.2023.3262873"},"language":"en","primary_location":{"id":"doi:10.1109/jiot.2023.3262873","is_oa":true,"landing_page_url":"https://doi.org/10.1109/jiot.2023.3262873","pdf_url":"https://ieeexplore.ieee.org/ielx7/6488907/6702522/10086593.pdf","source":{"id":"https://openalex.org/S2480266640","display_name":"IEEE Internet of Things Journal","issn_l":"2327-4662","issn":["2327-4662","2372-2541"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Internet of Things Journal","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"hybrid","oa_url":"https://ieeexplore.ieee.org/ielx7/6488907/6702522/10086593.pdf","any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5012440812","display_name":"Vitor Graveto","orcid":"https://orcid.org/0000-0002-9436-6067"},"institutions":[{"id":"https://openalex.org/I76903346","display_name":"University of Coimbra","ror":"https://ror.org/04z8k9a98","country_code":"PT","type":"education","lineage":["https://openalex.org/I76903346"]}],"countries":["PT"],"is_corresponding":true,"raw_author_name":"Vitor Graveto","raw_affiliation_strings":["University of Coimbra, CISUC, DEI, Coimbra, Portugal","CISUC, DEI, Polo II -Pinhal de Marrocos, University of Coimbra, Coimbra, Portugal"],"raw_orcid":"https://orcid.org/0000-0002-9436-6067","affiliations":[{"raw_affiliation_string":"University of Coimbra, CISUC, DEI, Coimbra, Portugal","institution_ids":["https://openalex.org/I76903346"]},{"raw_affiliation_string":"CISUC, DEI, Polo II -Pinhal de Marrocos, University of Coimbra, Coimbra, Portugal","institution_ids":["https://openalex.org/I76903346"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5081229833","display_name":"Tiago Cruz","orcid":"https://orcid.org/0000-0001-9278-6503"},"institutions":[{"id":"https://openalex.org/I76903346","display_name":"University of Coimbra","ror":"https://ror.org/04z8k9a98","country_code":"PT","type":"education","lineage":["https://openalex.org/I76903346"]}],"countries":["PT"],"is_corresponding":false,"raw_author_name":"Tiago Cruz","raw_affiliation_strings":["University of Coimbra, CISUC, DEI, Coimbra, Portugal"],"raw_orcid":"https://orcid.org/0000-0001-9278-6503","affiliations":[{"raw_affiliation_string":"University of Coimbra, CISUC, DEI, Coimbra, Portugal","institution_ids":["https://openalex.org/I76903346"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5044815659","display_name":"Paulo Sim\u00f5es","orcid":"https://orcid.org/0000-0002-5079-8327"},"institutions":[{"id":"https://openalex.org/I76903346","display_name":"University of Coimbra","ror":"https://ror.org/04z8k9a98","country_code":"PT","type":"education","lineage":["https://openalex.org/I76903346"]}],"countries":["PT"],"is_corresponding":false,"raw_author_name":"Paulo Sim\u00f5es","raw_affiliation_strings":["University of Coimbra, CISUC, DEI, Coimbra, Portugal"],"raw_orcid":"https://orcid.org/0000-0002-5079-8327","affiliations":[{"raw_affiliation_string":"University of Coimbra, CISUC, DEI, Coimbra, Portugal","institution_ids":["https://openalex.org/I76903346"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":3,"corresponding_author_ids":["https://openalex.org/A5012440812"],"corresponding_institution_ids":["https://openalex.org/I76903346"],"apc_list":null,"apc_paid":null,"fwci":1.076,"has_fulltext":true,"cited_by_count":6,"citation_normalized_percentile":{"value":0.76221905,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":90,"max":97},"biblio":{"volume":"10","issue":"15","first_page":"13727","last_page":"13741"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10917","display_name":"Smart Grid Security and Resilience","score":0.9994000196456909,"subfield":{"id":"https://openalex.org/subfields/2207","display_name":"Control and Systems Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10917","display_name":"Smart Grid Security and Resilience","score":0.9994000196456909,"subfield":{"id":"https://openalex.org/subfields/2207","display_name":"Control and Systems Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9984999895095825,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.998199999332428,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.7566995620727539},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7007206678390503},{"id":"https://openalex.org/keywords/building-automation","display_name":"Building automation","score":0.5919340252876282},{"id":"https://openalex.org/keywords/automation","display_name":"Automation","score":0.5845215320587158},{"id":"https://openalex.org/keywords/variety","display_name":"Variety (cybernetics)","score":0.548933744430542},{"id":"https://openalex.org/keywords/access-control","display_name":"Access control","score":0.45974475145339966},{"id":"https://openalex.org/keywords/premise","display_name":"Premise","score":0.4497164189815521},{"id":"https://openalex.org/keywords/control","display_name":"Control (management)","score":0.4331223964691162},{"id":"https://openalex.org/keywords/engineering","display_name":"Engineering","score":0.14118260145187378}],"concepts":[{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.7566995620727539},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7007206678390503},{"id":"https://openalex.org/C83931994","wikidata":"https://www.wikidata.org/wiki/Q1149653","display_name":"Building automation","level":2,"score":0.5919340252876282},{"id":"https://openalex.org/C115901376","wikidata":"https://www.wikidata.org/wiki/Q184199","display_name":"Automation","level":2,"score":0.5845215320587158},{"id":"https://openalex.org/C136197465","wikidata":"https://www.wikidata.org/wiki/Q1729295","display_name":"Variety (cybernetics)","level":2,"score":0.548933744430542},{"id":"https://openalex.org/C527821871","wikidata":"https://www.wikidata.org/wiki/Q228502","display_name":"Access control","level":2,"score":0.45974475145339966},{"id":"https://openalex.org/C2778023277","wikidata":"https://www.wikidata.org/wiki/Q321703","display_name":"Premise","level":2,"score":0.4497164189815521},{"id":"https://openalex.org/C2775924081","wikidata":"https://www.wikidata.org/wiki/Q55608371","display_name":"Control (management)","level":2,"score":0.4331223964691162},{"id":"https://openalex.org/C127413603","wikidata":"https://www.wikidata.org/wiki/Q11023","display_name":"Engineering","level":0,"score":0.14118260145187378},{"id":"https://openalex.org/C97355855","wikidata":"https://www.wikidata.org/wiki/Q11473","display_name":"Thermodynamics","level":1,"score":0.0},{"id":"https://openalex.org/C138885662","wikidata":"https://www.wikidata.org/wiki/Q5891","display_name":"Philosophy","level":0,"score":0.0},{"id":"https://openalex.org/C121332964","wikidata":"https://www.wikidata.org/wiki/Q413","display_name":"Physics","level":0,"score":0.0},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.0},{"id":"https://openalex.org/C78519656","wikidata":"https://www.wikidata.org/wiki/Q101333","display_name":"Mechanical engineering","level":1,"score":0.0},{"id":"https://openalex.org/C41895202","wikidata":"https://www.wikidata.org/wiki/Q8162","display_name":"Linguistics","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/jiot.2023.3262873","is_oa":true,"landing_page_url":"https://doi.org/10.1109/jiot.2023.3262873","pdf_url":"https://ieeexplore.ieee.org/ielx7/6488907/6702522/10086593.pdf","source":{"id":"https://openalex.org/S2480266640","display_name":"IEEE Internet of Things Journal","issn_l":"2327-4662","issn":["2327-4662","2372-2541"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Internet of Things Journal","raw_type":"journal-article"}],"best_oa_location":{"id":"doi:10.1109/jiot.2023.3262873","is_oa":true,"landing_page_url":"https://doi.org/10.1109/jiot.2023.3262873","pdf_url":"https://ieeexplore.ieee.org/ielx7/6488907/6702522/10086593.pdf","source":{"id":"https://openalex.org/S2480266640","display_name":"IEEE Internet of Things Journal","issn_l":"2327-4662","issn":["2327-4662","2372-2541"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Internet of Things Journal","raw_type":"journal-article"},"sustainable_development_goals":[{"score":0.6399999856948853,"display_name":"Industry, innovation and infrastructure","id":"https://metadata.un.org/sdg/9"}],"awards":[{"id":"https://openalex.org/G1578237752","display_name":null,"funder_award_id":"COMPETE","funder_id":"https://openalex.org/F4320334779","funder_display_name":"Funda\u00e7\u00e3o para a Ci\u00eancia e a Tecnologia"},{"id":"https://openalex.org/G1779328845","display_name":null,"funder_award_id":"UIDB/00326/2020","funder_id":"https://openalex.org/F4320334779","funder_display_name":"Funda\u00e7\u00e3o para a Ci\u00eancia e a Tecnologia"},{"id":"https://openalex.org/G3838636553","display_name":null,"funder_award_id":"-01-0247-","funder_id":"https://openalex.org/F4320334779","funder_display_name":"Funda\u00e7\u00e3o para a Ci\u00eancia e a Tecnologia"},{"id":"https://openalex.org/G4176497637","display_name":null,"funder_award_id":"COMPETE 2020","funder_id":"https://openalex.org/F4320334779","funder_display_name":"Funda\u00e7\u00e3o para a Ci\u00eancia e a Tecnologia"},{"id":"https://openalex.org/G433596833","display_name":null,"funder_award_id":"UIDP/00326/2020","funder_id":"https://openalex.org/F4320334779","funder_display_name":"Funda\u00e7\u00e3o para a Ci\u00eancia e a Tecnologia"},{"id":"https://openalex.org/G4811366021","display_name":null,"funder_award_id":"00326","funder_id":"https://openalex.org/F4320334779","funder_display_name":"Funda\u00e7\u00e3o para a Ci\u00eancia e a Tecnologia"},{"id":"https://openalex.org/G5224927334","display_name":null,"funder_award_id":"POCI-01-","funder_id":"https://openalex.org/F4320334779","funder_display_name":"Funda\u00e7\u00e3o para a Ci\u00eancia e a Tecnologia"},{"id":"https://openalex.org/G7188534130","display_name":null,"funder_award_id":"UIDB/00326/2020 or project code UIDP/00326/2020","funder_id":"https://openalex.org/F4320334779","funder_display_name":"Funda\u00e7\u00e3o para a Ci\u00eancia e a Tecnologia"},{"id":"https://openalex.org/G8559185249","display_name":null,"funder_award_id":"POCI-01-0247","funder_id":"https://openalex.org/F4320334779","funder_display_name":"Funda\u00e7\u00e3o para a Ci\u00eancia e a Tecnologia"},{"id":"https://openalex.org/G8596655568","display_name":null,"funder_award_id":"UIDP/00326/2020","funder_id":"https://openalex.org/F4320323642","funder_display_name":"Minist\u00e9rio da Ci\u00eancia, Tecnologia e Ensino Superior"}],"funders":[{"id":"https://openalex.org/F4320323642","display_name":"Minist\u00e9rio da Ci\u00eancia, Tecnologia e Ensino Superior","ror":"https://ror.org/045b9pr88"},{"id":"https://openalex.org/F4320334779","display_name":"Funda\u00e7\u00e3o para a Ci\u00eancia e a Tecnologia","ror":"https://ror.org/00snfqn58"}],"has_content":{"grobid_xml":true,"pdf":true},"content_urls":{"pdf":"https://content.openalex.org/works/W4361803585.pdf","grobid_xml":"https://content.openalex.org/works/W4361803585.grobid-xml"},"referenced_works_count":34,"referenced_works":["https://openalex.org/W1018939436","https://openalex.org/W1811605617","https://openalex.org/W1994477615","https://openalex.org/W2014051288","https://openalex.org/W2112353775","https://openalex.org/W2604772351","https://openalex.org/W2755457657","https://openalex.org/W2794923725","https://openalex.org/W2889013206","https://openalex.org/W2897167156","https://openalex.org/W2956082923","https://openalex.org/W2958623095","https://openalex.org/W2962789418","https://openalex.org/W2962794222","https://openalex.org/W2962909198","https://openalex.org/W2970952103","https://openalex.org/W2984900279","https://openalex.org/W3001006544","https://openalex.org/W3005731256","https://openalex.org/W3089004192","https://openalex.org/W3101320827","https://openalex.org/W3118243155","https://openalex.org/W3210569439","https://openalex.org/W4240226086","https://openalex.org/W4254619959","https://openalex.org/W4298174554","https://openalex.org/W4317795291","https://openalex.org/W6626589854","https://openalex.org/W6653974621","https://openalex.org/W6660929773","https://openalex.org/W6720159607","https://openalex.org/W6735965700","https://openalex.org/W6744301728","https://openalex.org/W6754356813"],"related_works":["https://openalex.org/W4242682954","https://openalex.org/W2358731986","https://openalex.org/W99300660","https://openalex.org/W2386801007","https://openalex.org/W3122251494","https://openalex.org/W2354606671","https://openalex.org/W2369647822","https://openalex.org/W1598491185","https://openalex.org/W2371815723","https://openalex.org/W2385980761"],"abstract_inverted_index":{"When":[0],"it":[1,150],"comes":[2],"to":[3,24,96,125,140,185],"protecting":[4],"confidential":[5],"and/or":[6,53],"sensitive":[7],"information,":[8],"organizations":[9],"have":[10],"a":[11,27,48,68,118,135],"plethora":[12],"of":[13,30,34,50,117,134,162,173,178,209],"recommendations,":[14],"standards,":[15],"policies":[16],"and":[17,98,122,145,166,194,205],"security":[18,101],"controls":[19,102],"at":[20],"their":[21,87],"disposal,":[22],"conceived":[23],"deal":[25],"with":[26,93,156],"wide":[28],"variety":[29],"threats.":[31],"However,":[32],"most":[33,100],"them":[35],"share":[36],"the":[37,94,115,141,160,163,171],"same":[38],"fundamental":[39],"premise:":[40],"that":[41,56],"weaknesses":[42],"are":[43,67,211],"inline":[44,191],"by":[45,176],"nature,":[46],"as":[47],"consequence":[49],"infrastructure,":[51],"social":[52],"technological":[54],"gaps":[55],"can":[57],"be":[58],"detected,":[59],"controlled,":[60],"mitigated":[61],"or":[62,76,84,104,151],"constrained.":[63],"Side":[64],"channel":[65],"threats":[66],"different":[69,189],"matter,":[70],"though.":[71],"Stemming":[72],"from":[73,128],"unconventional":[74],"intrusion":[75],"attack":[77],"vectors":[78],"whose":[79],"existence":[80],"was":[81,183],"inconceivable,":[82],"unexpected":[83],"deemed":[85],"unfeasible,":[86],"successful":[88],"exploitation":[89],"may":[90],"provide":[91],"attackers":[92],"means":[95,177],"bypass":[97],"render":[99],"ineffective":[103],"even":[105,152],"useless.":[106],"In":[107],"this":[108,174,207],"paper":[109],"we":[110],"address":[111],"one":[112],"such":[113],"case:":[114],"use":[116],"KNX-based":[119],"building":[120,164],"automation":[121,165],"control":[123,153,167],"system":[124],"exfiltrate":[126],"data":[127,148],"an":[129,179],"air-gapped":[130],"infrastructure.":[131],"The":[132],"introduction":[133],"small":[136],"device":[137],"provides":[138],"connectivity":[139],"existing":[142],"KNX":[143],"fieldbus":[144],"enables":[146],"sending":[147],"through":[149],"other":[154],"devices,":[155],"no":[157],"interference":[158],"in":[159],"operation":[161],"network.":[168],"We":[169],"validated":[170],"feasibility":[172],"approach":[175],"experimental":[180],"setup,":[181],"which":[182],"used":[184],"successfully":[186],"evaluate":[187],"two":[188],"techniques:":[190],"bus":[192],"exfiltration":[193],"optical":[195],"transmission,":[196],"via":[197],"dimmer":[198],"control.":[199],"Finally,":[200],"some":[201],"measures":[202],"for":[203],"detecting":[204],"mitigating":[206],"type":[208],"attacks":[210],"proposed.":[212]},"counts_by_year":[{"year":2025,"cited_by_count":3},{"year":2024,"cited_by_count":2},{"year":2023,"cited_by_count":1}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
