{"id":"https://openalex.org/W4389575364","doi":"https://doi.org/10.1109/wpmc59531.2023.10338835","title":"On Manipulating Routing Table to Realize Redirect Attacks in O-RAN by Malicious xApp","display_name":"On Manipulating Routing Table to Realize Redirect Attacks in O-RAN by Malicious xApp","publication_year":2023,"publication_date":"2023-11-19","ids":{"openalex":"https://openalex.org/W4389575364","doi":"https://doi.org/10.1109/wpmc59531.2023.10338835"},"language":"en","primary_location":{"id":"doi:10.1109/wpmc59531.2023.10338835","is_oa":false,"landing_page_url":"https://doi.org/10.1109/wpmc59531.2023.10338835","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2023 26th International Symposium on Wireless Personal Multimedia Communications (WPMC)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5113068598","display_name":"Chi-heng Tseng","orcid":null},"institutions":[{"id":"https://openalex.org/I154864474","display_name":"National Taiwan University of Science and Technology","ror":"https://ror.org/00q09pe49","country_code":"TW","type":"education","lineage":["https://openalex.org/I154864474"]}],"countries":["TW"],"is_corresponding":true,"raw_author_name":"Chi-heng Tseng","raw_affiliation_strings":["National Taiwan University of Science and Technology,Department of Computer Science and Information Engineering,Taipei,Taiwan","Department of Computer Science and Information Engineering, National Taiwan University of Science and Technology, Taipei, Taiwan"],"affiliations":[{"raw_affiliation_string":"National Taiwan University of Science and Technology,Department of Computer Science and Information Engineering,Taipei,Taiwan","institution_ids":["https://openalex.org/I154864474"]},{"raw_affiliation_string":"Department of Computer Science and Information Engineering, National Taiwan University of Science and Technology, Taipei, Taiwan","institution_ids":["https://openalex.org/I154864474"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5082015679","display_name":"Cheng-Feng Hung","orcid":"https://orcid.org/0000-0002-1771-2261"},"institutions":[{"id":"https://openalex.org/I154864474","display_name":"National Taiwan University of Science and Technology","ror":"https://ror.org/00q09pe49","country_code":"TW","type":"education","lineage":["https://openalex.org/I154864474"]}],"countries":["TW"],"is_corresponding":false,"raw_author_name":"Cheng-Feng Hung","raw_affiliation_strings":["National Taiwan University of Science and Technology,Department of Computer Science and Information Engineering,Taipei,Taiwan","Department of Computer Science and Information Engineering, National Taiwan University of Science and Technology, Taipei, Taiwan"],"affiliations":[{"raw_affiliation_string":"National Taiwan University of Science and Technology,Department of Computer Science and Information Engineering,Taipei,Taiwan","institution_ids":["https://openalex.org/I154864474"]},{"raw_affiliation_string":"Department of Computer Science and Information Engineering, National Taiwan University of Science and Technology, Taipei, Taiwan","institution_ids":["https://openalex.org/I154864474"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5102343092","display_name":"Bing-Kai Hong","orcid":null},"institutions":[{"id":"https://openalex.org/I154864474","display_name":"National Taiwan University of Science and Technology","ror":"https://ror.org/00q09pe49","country_code":"TW","type":"education","lineage":["https://openalex.org/I154864474"]}],"countries":["TW"],"is_corresponding":false,"raw_author_name":"Bing-Kai Hong","raw_affiliation_strings":["National Taiwan University of Science and Technology,Department of Computer Science and Information Engineering,Taipei,Taiwan","Department of Computer Science and Information Engineering, National Taiwan University of Science and Technology, Taipei, Taiwan"],"affiliations":[{"raw_affiliation_string":"National Taiwan University of Science and Technology,Department of Computer Science and Information Engineering,Taipei,Taiwan","institution_ids":["https://openalex.org/I154864474"]},{"raw_affiliation_string":"Department of Computer Science and Information Engineering, National Taiwan University of Science and Technology, Taipei, Taiwan","institution_ids":["https://openalex.org/I154864474"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5040420733","display_name":"Shin\u2010Ming Cheng","orcid":"https://orcid.org/0000-0002-9796-0643"},"institutions":[{"id":"https://openalex.org/I154864474","display_name":"National Taiwan University of Science and Technology","ror":"https://ror.org/00q09pe49","country_code":"TW","type":"education","lineage":["https://openalex.org/I154864474"]}],"countries":["TW"],"is_corresponding":false,"raw_author_name":"Shin-Ming Cheng","raw_affiliation_strings":["National Taiwan University of Science and Technology,Department of Computer Science and Information Engineering,Taipei,Taiwan","Department of Computer Science and Information Engineering, National Taiwan University of Science and Technology, Taipei, Taiwan"],"affiliations":[{"raw_affiliation_string":"National Taiwan University of Science and Technology,Department of Computer Science and Information Engineering,Taipei,Taiwan","institution_ids":["https://openalex.org/I154864474"]},{"raw_affiliation_string":"Department of Computer Science and Information Engineering, National Taiwan University of Science and Technology, Taipei, Taiwan","institution_ids":["https://openalex.org/I154864474"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5113068598"],"corresponding_institution_ids":["https://openalex.org/I154864474"],"apc_list":null,"apc_paid":null,"fwci":1.0046,"has_fulltext":false,"cited_by_count":5,"citation_normalized_percentile":{"value":0.78168546,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":95,"max":97},"biblio":{"volume":null,"issue":null,"first_page":"288","last_page":"292"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10714","display_name":"Software-Defined Networks and 5G","score":0.9997000098228455,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10714","display_name":"Software-Defined Networks and 5G","score":0.9997000098228455,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11598","display_name":"Internet Traffic Analysis and Secure E-voting","score":0.9991000294685364,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12791","display_name":"Full-Duplex Wireless Communications","score":0.9991000294685364,"subfield":{"id":"https://openalex.org/subfields/2208","display_name":"Electrical and Electronic Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7575098276138306},{"id":"https://openalex.org/keywords/ran","display_name":"Ran","score":0.7372788190841675},{"id":"https://openalex.org/keywords/exploit","display_name":"Exploit","score":0.7274448275566101},{"id":"https://openalex.org/keywords/permission","display_name":"Permission","score":0.7102144956588745},{"id":"https://openalex.org/keywords/computer-network","display_name":"Computer network","score":0.6289581656455994},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.6196324229240417},{"id":"https://openalex.org/keywords/routing-table","display_name":"Routing table","score":0.5557578206062317},{"id":"https://openalex.org/keywords/authentication","display_name":"Authentication (law)","score":0.5390732884407043},{"id":"https://openalex.org/keywords/upload","display_name":"Upload","score":0.5058014392852783},{"id":"https://openalex.org/keywords/table","display_name":"Table (database)","score":0.49126070737838745},{"id":"https://openalex.org/keywords/routing","display_name":"Routing (electronic design automation)","score":0.48923730850219727},{"id":"https://openalex.org/keywords/vulnerability","display_name":"Vulnerability (computing)","score":0.4386114180088043},{"id":"https://openalex.org/keywords/audit","display_name":"Audit","score":0.416273295879364},{"id":"https://openalex.org/keywords/routing-protocol","display_name":"Routing protocol","score":0.25771236419677734},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.25079238414764404},{"id":"https://openalex.org/keywords/database","display_name":"Database","score":0.12790441513061523}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7575098276138306},{"id":"https://openalex.org/C160704184","wikidata":"https://www.wikidata.org/wiki/Q18031028","display_name":"Ran","level":2,"score":0.7372788190841675},{"id":"https://openalex.org/C165696696","wikidata":"https://www.wikidata.org/wiki/Q11287","display_name":"Exploit","level":2,"score":0.7274448275566101},{"id":"https://openalex.org/C2779089604","wikidata":"https://www.wikidata.org/wiki/Q7169333","display_name":"Permission","level":2,"score":0.7102144956588745},{"id":"https://openalex.org/C31258907","wikidata":"https://www.wikidata.org/wiki/Q1301371","display_name":"Computer network","level":1,"score":0.6289581656455994},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.6196324229240417},{"id":"https://openalex.org/C184896649","wikidata":"https://www.wikidata.org/wiki/Q290066","display_name":"Routing table","level":4,"score":0.5557578206062317},{"id":"https://openalex.org/C148417208","wikidata":"https://www.wikidata.org/wiki/Q4825882","display_name":"Authentication (law)","level":2,"score":0.5390732884407043},{"id":"https://openalex.org/C71901391","wikidata":"https://www.wikidata.org/wiki/Q7126699","display_name":"Upload","level":2,"score":0.5058014392852783},{"id":"https://openalex.org/C45235069","wikidata":"https://www.wikidata.org/wiki/Q278425","display_name":"Table (database)","level":2,"score":0.49126070737838745},{"id":"https://openalex.org/C74172769","wikidata":"https://www.wikidata.org/wiki/Q1446839","display_name":"Routing (electronic design automation)","level":2,"score":0.48923730850219727},{"id":"https://openalex.org/C95713431","wikidata":"https://www.wikidata.org/wiki/Q631425","display_name":"Vulnerability (computing)","level":2,"score":0.4386114180088043},{"id":"https://openalex.org/C199521495","wikidata":"https://www.wikidata.org/wiki/Q181487","display_name":"Audit","level":2,"score":0.416273295879364},{"id":"https://openalex.org/C104954878","wikidata":"https://www.wikidata.org/wiki/Q1648707","display_name":"Routing protocol","level":3,"score":0.25771236419677734},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.25079238414764404},{"id":"https://openalex.org/C77088390","wikidata":"https://www.wikidata.org/wiki/Q8513","display_name":"Database","level":1,"score":0.12790441513061523},{"id":"https://openalex.org/C199539241","wikidata":"https://www.wikidata.org/wiki/Q7748","display_name":"Law","level":1,"score":0.0},{"id":"https://openalex.org/C17744445","wikidata":"https://www.wikidata.org/wiki/Q36442","display_name":"Political science","level":0,"score":0.0},{"id":"https://openalex.org/C187736073","wikidata":"https://www.wikidata.org/wiki/Q2920921","display_name":"Management","level":1,"score":0.0},{"id":"https://openalex.org/C162324750","wikidata":"https://www.wikidata.org/wiki/Q8134","display_name":"Economics","level":0,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/wpmc59531.2023.10338835","is_oa":false,"landing_page_url":"https://doi.org/10.1109/wpmc59531.2023.10338835","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2023 26th International Symposium on Wireless Personal Multimedia Communications (WPMC)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"score":0.4000000059604645,"id":"https://metadata.un.org/sdg/16","display_name":"Peace, Justice and strong institutions"}],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":9,"referenced_works":["https://openalex.org/W4221148057","https://openalex.org/W4225006796","https://openalex.org/W4317796310","https://openalex.org/W4327928501","https://openalex.org/W4365790147","https://openalex.org/W4386243281","https://openalex.org/W4389104944","https://openalex.org/W6809932472","https://openalex.org/W6810489338"],"related_works":["https://openalex.org/W1766728438","https://openalex.org/W1668090144","https://openalex.org/W2083168956","https://openalex.org/W2980853820","https://openalex.org/W404373762","https://openalex.org/W2186004379","https://openalex.org/W2374086689","https://openalex.org/W3176279093","https://openalex.org/W2373945265","https://openalex.org/W2370203001"],"abstract_inverted_index":{"Open":[0],"Radio":[1,7],"Access":[2,8],"Network":[3,9],"(O-RAN)":[4],"collaborates":[5],"through":[6],"Intelligent":[10],"Controllers":[11],"(RICs)":[12],"and":[13,47,64,79,96,106,124],"their":[14],"associated":[15],"xAPPs":[16,85,101],"to":[17,33,50],"collect":[18],"real-time":[19],"status":[20],"information":[21],"from":[22],"underlying":[23],"RAN":[24,110],"components.":[25],"This":[26],"allows":[27],"dynamically":[28],"changing":[29],"the":[30,35,67,76,80,92,108,119,125],"system":[31],"resources":[32],"optimize":[34],"RAN's":[36],"overall":[37],"performance.":[38],"Unfortunately,":[39],"there's":[40],"no":[41,48],"auditing":[42],"mechanism":[43],"for":[44,84],"xAPP":[45],"uploads":[46],"adherence":[49],"proper":[51],"permission":[52,82],"management":[53],"protocols.":[54],"In":[55],"this":[56,104],"article,":[57],"we":[58],"implement":[59],"a":[60,87,114],"working":[61],"O-RAN":[62],"platform":[63],"discover":[65],"that":[66],"lack":[68],"of":[69],"mutual":[70],"authentication":[71],"mechanisms":[72],"between":[73],"services":[74],"in":[75],"Near-Real-Time":[77],"RIC":[78],"improper":[81],"settings":[83],"pose":[86],"serious":[88],"threat.":[89],"By":[90],"altering":[91],"original":[93],"routing":[94],"table":[95],"launching":[97],"redirection":[98],"attacks,":[99],"malicious":[100],"could":[102],"exploit":[103],"vulnerability":[105],"render":[107],"entire":[109],"inoperable.":[111],"We":[112],"provide":[113],"detailed":[115],"report":[116],"on":[117],"how":[118],"attack":[120],"was":[121],"carried":[122],"out":[123],"impact":[126],"it":[127],"caused.":[128]},"counts_by_year":[{"year":2025,"cited_by_count":2},{"year":2024,"cited_by_count":3}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
