{"id":"https://openalex.org/W4223972943","doi":"https://doi.org/10.1145/3508398.3511496","title":"Quantifying the Risk of Wormhole Attacks on Bluetooth Contact Tracing","display_name":"Quantifying the Risk of Wormhole Attacks on Bluetooth Contact Tracing","publication_year":2022,"publication_date":"2022-04-14","ids":{"openalex":"https://openalex.org/W4223972943","doi":"https://doi.org/10.1145/3508398.3511496"},"language":"en","primary_location":{"id":"doi:10.1145/3508398.3511496","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3508398.3511496","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the Twelfth ACM Conference on Data and Application Security and Privacy","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5016418759","display_name":"Stefan Czybik","orcid":"https://orcid.org/0009-0001-3342-7460"},"institutions":[{"id":"https://openalex.org/I94509681","display_name":"Technische Universit\u00e4t Braunschweig","ror":"https://ror.org/010nsgg66","country_code":"DE","type":"education","lineage":["https://openalex.org/I94509681"]}],"countries":["DE"],"is_corresponding":true,"raw_author_name":"Stefan Czybik","raw_affiliation_strings":["Technische Universit\u00e4t Braunschweig, Braunschweig, Germany"],"affiliations":[{"raw_affiliation_string":"Technische Universit\u00e4t Braunschweig, Braunschweig, Germany","institution_ids":["https://openalex.org/I94509681"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5029169901","display_name":"Daniel J. Arp","orcid":"https://orcid.org/0000-0003-3628-794X"},"institutions":[{"id":"https://openalex.org/I4577782","display_name":"Technische Universit\u00e4t Berlin","ror":"https://ror.org/03v4gjf40","country_code":"DE","type":"education","lineage":["https://openalex.org/I4577782"]}],"countries":["DE"],"is_corresponding":false,"raw_author_name":"Daniel Arp","raw_affiliation_strings":["Technische Universit\u00e4t Berlin, Berlin, Germany"],"affiliations":[{"raw_affiliation_string":"Technische Universit\u00e4t Berlin, Berlin, Germany","institution_ids":["https://openalex.org/I4577782"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5066077721","display_name":"Konrad Rieck","orcid":"https://orcid.org/0000-0002-5054-8758"},"institutions":[{"id":"https://openalex.org/I94509681","display_name":"Technische Universit\u00e4t Braunschweig","ror":"https://ror.org/010nsgg66","country_code":"DE","type":"education","lineage":["https://openalex.org/I94509681"]}],"countries":["DE"],"is_corresponding":false,"raw_author_name":"Konrad Rieck","raw_affiliation_strings":["Technische Universit\u00e4t Braunschweig, Braunschweig, Germany"],"affiliations":[{"raw_affiliation_string":"Technische Universit\u00e4t Braunschweig, Braunschweig, Germany","institution_ids":["https://openalex.org/I94509681"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":3,"corresponding_author_ids":["https://openalex.org/A5016418759"],"corresponding_institution_ids":["https://openalex.org/I94509681"],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.0375388,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":"264","last_page":"275"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T12943","display_name":"COVID-19 Digital Contact Tracing","score":0.9986000061035156,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T12943","display_name":"COVID-19 Digital Contact Tracing","score":0.9986000061035156,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11045","display_name":"Privacy, Security, and Data Protection","score":0.9901999831199646,"subfield":{"id":"https://openalex.org/subfields/3312","display_name":"Sociology and Political Science"},"field":{"id":"https://openalex.org/fields/33","display_name":"Social Sciences"},"domain":{"id":"https://openalex.org/domains/2","display_name":"Social Sciences"}},{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":0.9872000217437744,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/beacon","display_name":"Beacon","score":0.7966650724411011},{"id":"https://openalex.org/keywords/bluetooth","display_name":"Bluetooth","score":0.7801194190979004},{"id":"https://openalex.org/keywords/contact-tracing","display_name":"Contact tracing","score":0.6686833500862122},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.6635275483131409},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.6541457772254944},{"id":"https://openalex.org/keywords/wormhole","display_name":"Wormhole","score":0.5895465016365051},{"id":"https://openalex.org/keywords/tracing","display_name":"Tracing","score":0.5689730048179626},{"id":"https://openalex.org/keywords/wireless","display_name":"Wireless","score":0.4580468535423279},{"id":"https://openalex.org/keywords/vulnerability","display_name":"Vulnerability (computing)","score":0.4522172212600708},{"id":"https://openalex.org/keywords/computer-network","display_name":"Computer network","score":0.32468461990356445},{"id":"https://openalex.org/keywords/coronavirus-disease-2019","display_name":"Coronavirus disease 2019 (COVID-19)","score":0.2622852921485901},{"id":"https://openalex.org/keywords/telecommunications","display_name":"Telecommunications","score":0.20846423506736755},{"id":"https://openalex.org/keywords/infectious-disease","display_name":"Infectious disease (medical specialty)","score":0.16717708110809326}],"concepts":[{"id":"https://openalex.org/C102168758","wikidata":"https://www.wikidata.org/wiki/Q7321258","display_name":"Beacon","level":2,"score":0.7966650724411011},{"id":"https://openalex.org/C546215728","wikidata":"https://www.wikidata.org/wiki/Q39531","display_name":"Bluetooth","level":3,"score":0.7801194190979004},{"id":"https://openalex.org/C113162765","wikidata":"https://www.wikidata.org/wiki/Q1128437","display_name":"Contact tracing","level":5,"score":0.6686833500862122},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6635275483131409},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.6541457772254944},{"id":"https://openalex.org/C29013271","wikidata":"https://www.wikidata.org/wiki/Q7544","display_name":"Wormhole","level":2,"score":0.5895465016365051},{"id":"https://openalex.org/C138673069","wikidata":"https://www.wikidata.org/wiki/Q322229","display_name":"Tracing","level":2,"score":0.5689730048179626},{"id":"https://openalex.org/C555944384","wikidata":"https://www.wikidata.org/wiki/Q249","display_name":"Wireless","level":2,"score":0.4580468535423279},{"id":"https://openalex.org/C95713431","wikidata":"https://www.wikidata.org/wiki/Q631425","display_name":"Vulnerability (computing)","level":2,"score":0.4522172212600708},{"id":"https://openalex.org/C31258907","wikidata":"https://www.wikidata.org/wiki/Q1301371","display_name":"Computer network","level":1,"score":0.32468461990356445},{"id":"https://openalex.org/C3008058167","wikidata":"https://www.wikidata.org/wiki/Q84263196","display_name":"Coronavirus disease 2019 (COVID-19)","level":4,"score":0.2622852921485901},{"id":"https://openalex.org/C76155785","wikidata":"https://www.wikidata.org/wiki/Q418","display_name":"Telecommunications","level":1,"score":0.20846423506736755},{"id":"https://openalex.org/C524204448","wikidata":"https://www.wikidata.org/wiki/Q788926","display_name":"Infectious disease (medical specialty)","level":3,"score":0.16717708110809326},{"id":"https://openalex.org/C2779134260","wikidata":"https://www.wikidata.org/wiki/Q12136","display_name":"Disease","level":2,"score":0.0},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.0},{"id":"https://openalex.org/C62520636","wikidata":"https://www.wikidata.org/wiki/Q944","display_name":"Quantum mechanics","level":1,"score":0.0},{"id":"https://openalex.org/C142724271","wikidata":"https://www.wikidata.org/wiki/Q7208","display_name":"Pathology","level":1,"score":0.0},{"id":"https://openalex.org/C121332964","wikidata":"https://www.wikidata.org/wiki/Q413","display_name":"Physics","level":0,"score":0.0},{"id":"https://openalex.org/C71924100","wikidata":"https://www.wikidata.org/wiki/Q11190","display_name":"Medicine","level":0,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3508398.3511496","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3508398.3511496","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the Twelfth ACM Conference on Data and Application Security and Privacy","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/3","display_name":"Good health and well-being","score":0.7799999713897705}],"awards":[{"id":"https://openalex.org/G4628202004","display_name":null,"funder_award_id":"456292433","funder_id":"https://openalex.org/F4320320879","funder_display_name":"Deutsche Forschungsgemeinschaft"}],"funders":[{"id":"https://openalex.org/F4320320879","display_name":"Deutsche Forschungsgemeinschaft","ror":"https://ror.org/018mejw64"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":11,"referenced_works":["https://openalex.org/W2151993488","https://openalex.org/W2547463657","https://openalex.org/W3021029151","https://openalex.org/W3036422000","https://openalex.org/W3109469064","https://openalex.org/W3131910425","https://openalex.org/W3191471302","https://openalex.org/W3194714732","https://openalex.org/W4206674866","https://openalex.org/W4214606707","https://openalex.org/W4233730851"],"related_works":["https://openalex.org/W2353358273","https://openalex.org/W4293248846","https://openalex.org/W3206178953","https://openalex.org/W4283319780","https://openalex.org/W3024057687","https://openalex.org/W4286413057","https://openalex.org/W4226253729","https://openalex.org/W4221068512","https://openalex.org/W3213733575","https://openalex.org/W3111211014"],"abstract_inverted_index":{"Digital":[0],"contact":[1,26,195,209],"tracing":[2,27,210],"is":[3,94],"a":[4,144,171,191,198],"valuable":[5],"tool":[6],"for":[7,109],"containing":[8],"the":[9,15,33,47,69,87,104,110,130,134,141,152,157,161,175,181,215],"spread":[10],"of":[11,32,46,89,106,114,133,156,163,179,183,217],"infectious":[12,176],"diseases.":[13],"During":[14],"COVID-19":[16],"pandemic,":[17],"different":[18,72],"systems":[19,34,53,211],"have":[20],"been":[21,84],"developed":[22],"that":[23,151,203],"enable":[24],"decentralized":[25],"on":[28,120],"mobile":[29],"devices.":[30],"Several":[31],"provide":[35],"strong":[36],"security":[37],"and":[38,74,116,128,136,146,154,188,212],"privacy":[39],"guarantees.":[40],"However,":[41],"they":[42],"also":[43],"inherit":[44],"weaknesses":[45],"underlying":[48],"wireless":[49],"protocols.":[50],"In":[51,98],"particular,":[52],"using":[54],"Bluetooth":[55,121],"LE":[56],"beacons":[57,70],"are":[58],"vulnerable":[59],"to":[60,140,193],"so-called":[61],"wormhole":[62,107,164,218],"attacks,":[63,165],"in":[64,92],"which":[65,118],"an":[66],"attacker":[67],"tunnels":[68],"between":[71,78],"locations":[73],"creates":[75],"false":[76],"contacts":[77],"individuals.":[79],"While":[80],"this":[81,99,124],"vulnerability":[82],"has":[83],"widely":[85],"discussed,":[86],"risk":[88,105,162,182],"successful":[90,184],"attacks":[91,108,185],"practice":[93],"still":[95],"largely":[96],"unknown.":[97],"paper,":[100],"we":[101,126,149,200],"quantitatively":[102],"analyze":[103],"exposure":[111],"notification":[112],"system":[113,135],"Google":[115],"Apple,":[117],"builds":[119],"LE.":[122],"To":[123],"end,":[125],"dissect":[127],"model":[129],"communication":[131],"process":[132],"identify":[137],"factors":[138],"contributing":[139],"risk.":[142],"Through":[143],"causal":[145],"empirical":[147],"analysis,":[148],"find":[150],"incidence":[153],"infectivity":[155],"traced":[158],"disease":[159],"drive":[160],"whereas":[166],"technical":[167],"aspects":[168],"only":[169],"play":[170],"minor":[172],"role.":[173],"Given":[174],"delta":[177],"variant":[178],"COVID-19,":[180],"thus":[186],"increases":[187],"may":[189],"pose":[190],"threat":[192],"digital":[194],"tracing.":[196],"As":[197],"remedy,":[199],"propose":[201],"countermeasures":[202],"can":[204],"be":[205],"integrated":[206],"into":[207],"existing":[208],"significantly":[213],"reduce":[214],"success":[216],"attacks.":[219]},"counts_by_year":[],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
