Network Security

Security Gaps Identified in Aviation Communication Protocols

FORTSECURE GLOBAL· 2026-08-10🛰 CISA Cybersecurity Advisories
#Aviation Security#Critical Infrastructure#ICS#Protocol Security#Network Defense

Research reveals vulnerabilities in legacy CPDLC over ATN-B1 aviation protocols, potentially leading to message injection and situational awareness degradation.

A new advisory from CISA highlights security vulnerabilities within the Controller-Pilot Data Link Communications (CPDLC) over the Aeronautical Telecommunication Network Baseline 1 (ATN-B1). CPDLC is a critical system used in modern aviation to allow air traffic controllers and pilots to communicate via text-based messages. However, the legacy ATN-B1 protocol relies on clear-text, unauthenticated radio frequency links. This lack of encryption and authentication allows for unauthorized message injection, denial-of-service (DoS) attacks, and forced session resets. While these issues do not immediately result in an unsafe aircraft condition, they can significantly increase pilot workload and reduce situational awareness during critical flight phases. ## Risks of Legacy RF Communication. The primary risk associated with ATN-B1 is the ability for an attacker within radio range to spoof messages from air traffic control. These unauthorized messages could provide incorrect instructions to the flight crew, leading to confusion or delays in safety-critical maneuvers. Furthermore, a DoS attack could disrupt the communication link entirely, forcing the crew to revert to voice communication, which may already be congested. The research demonstrates that the reliance on legacy, unencrypted protocols in critical infrastructure like aviation creates a window of opportunity for sophisticated threat actors to interfere with national airspace operations. ## Enhancing Operational Resilience. To mitigate these risks, the aviation industry must transition toward more secure protocols, such as ATN-B2 or IPS (Internet Protocol Suite)-based communications, which support modern encryption and authentication standards. In the interim, FORTSECURE GLOBAL recommends that operators and pilots be trained to recognize the signs of CPDLC interference and maintain high levels of verbal verification for any instructions that seem unusual or out of context. Furthermore, ground-based systems should implement monitoring tools to detect anomalies in RF traffic and potential injection attempts. Collaboration between regulatory bodies, manufacturers, and security researchers is vital to secure the future of global aviation communications.


แหล่งที่มา: CISA Cybersecurity Advisories เผยแพร่ครั้งแรก: Fri, 07 Aug 26 12:00:00 +0000 บทความต้นฉบับ: อ่านต้นฉบับ

Source Attribution

แหล่งที่มา: CISA Cybersecurity Advisories

เผยแพร่ครั้งแรก: Fri, 07 Aug 26 12:00:00 +0000

บทความต้นฉบับ: https://www.cisa.gov/news-events/ics-advisories/icsa-26-219-01

อ่านบทความต้นฉบับ ↗

* Facebook / LinkedIn ไม่อนุญาตให้ใส่ข้อความให้ล่วงหน้า — กดปุ่มจะคัดลอกข้อความให้ก่อน เปิดหน้าแชร์แล้ววาง (paste) ได้เลย พรีวิวการ์ดจะแสดงอัตโนมัติเมื่อวางลิงก์

← กลับไปหน้า Blog