Overcoming the DDoS Attack Vulnerability of an ISO 19847 Shipboard Data Server

The maritime industry, which transports approximately 90% of the world’s goods, plays a crucial role in the global economy. However, increasing reliance on digital technologies has made the industry vulnerable to cybersecurity threats that may compromise the safety and security of maritime operation...

Full description

Bibliographic Details
Main Authors: Changui Lee, Seojeong Lee
Format: Article
Language:English
Published: MDPI AG 2023-05-01
Series:Journal of Marine Science and Engineering
Subjects:
Online Access:https://www.mdpi.com/2077-1312/11/5/1000
_version_ 1797599525910609920
author Changui Lee
Seojeong Lee
author_facet Changui Lee
Seojeong Lee
author_sort Changui Lee
collection DOAJ
description The maritime industry, which transports approximately 90% of the world’s goods, plays a crucial role in the global economy. However, increasing reliance on digital technologies has made the industry vulnerable to cybersecurity threats that may compromise the safety and security of maritime operations, thereby potentially affecting global supply chain integrity and public safety. This study examines the vulnerability of the ISO 19847:2018 standard shipboard data server to distributed denial-of-service (DDoS) attacks and proposes a method to mitigate this vulnerability. To this end, we propose modifications to the MQTT v5 protocol used by the shipboard data server, which provides streaming data-transfer services, and conduct verification experiments. These modifications allow the shipboard data server to control the frequency of messages published by the MQTT publisher, thereby preventing it from being overwhelmed by massive amounts of traffic in the event of a DDoS attack. Therefore, the proposed method can enhance the overall cybersecurity of the maritime sector by preventing the misuse of onboard MQTT publishers and reducing the impact of DDoS attacks.
first_indexed 2024-03-11T03:36:41Z
format Article
id doaj.art-a49aefeef0f54c51ab7ac23059db8f45
institution Directory Open Access Journal
issn 2077-1312
language English
last_indexed 2024-03-11T03:36:41Z
publishDate 2023-05-01
publisher MDPI AG
record_format Article
series Journal of Marine Science and Engineering
spelling doaj.art-a49aefeef0f54c51ab7ac23059db8f452023-11-18T01:59:50ZengMDPI AGJournal of Marine Science and Engineering2077-13122023-05-01115100010.3390/jmse11051000Overcoming the DDoS Attack Vulnerability of an ISO 19847 Shipboard Data ServerChangui Lee0Seojeong Lee1Korea Conformity Laboratories, Changwon 51395, Republic of KoreaDivision of Marine System Engineering, Korea Maritime and Ocean University, Busan 49112, Republic of KoreaThe maritime industry, which transports approximately 90% of the world’s goods, plays a crucial role in the global economy. However, increasing reliance on digital technologies has made the industry vulnerable to cybersecurity threats that may compromise the safety and security of maritime operations, thereby potentially affecting global supply chain integrity and public safety. This study examines the vulnerability of the ISO 19847:2018 standard shipboard data server to distributed denial-of-service (DDoS) attacks and proposes a method to mitigate this vulnerability. To this end, we propose modifications to the MQTT v5 protocol used by the shipboard data server, which provides streaming data-transfer services, and conduct verification experiments. These modifications allow the shipboard data server to control the frequency of messages published by the MQTT publisher, thereby preventing it from being overwhelmed by massive amounts of traffic in the event of a DDoS attack. Therefore, the proposed method can enhance the overall cybersecurity of the maritime sector by preventing the misuse of onboard MQTT publishers and reducing the impact of DDoS attacks.https://www.mdpi.com/2077-1312/11/5/1000ISO 19847shipboard data serverMQTTcybersecurityDDoS
spellingShingle Changui Lee
Seojeong Lee
Overcoming the DDoS Attack Vulnerability of an ISO 19847 Shipboard Data Server
Journal of Marine Science and Engineering
ISO 19847
shipboard data server
MQTT
cybersecurity
DDoS
title Overcoming the DDoS Attack Vulnerability of an ISO 19847 Shipboard Data Server
title_full Overcoming the DDoS Attack Vulnerability of an ISO 19847 Shipboard Data Server
title_fullStr Overcoming the DDoS Attack Vulnerability of an ISO 19847 Shipboard Data Server
title_full_unstemmed Overcoming the DDoS Attack Vulnerability of an ISO 19847 Shipboard Data Server
title_short Overcoming the DDoS Attack Vulnerability of an ISO 19847 Shipboard Data Server
title_sort overcoming the ddos attack vulnerability of an iso 19847 shipboard data server
topic ISO 19847
shipboard data server
MQTT
cybersecurity
DDoS
url https://www.mdpi.com/2077-1312/11/5/1000
work_keys_str_mv AT changuilee overcomingtheddosattackvulnerabilityofaniso19847shipboarddataserver
AT seojeonglee overcomingtheddosattackvulnerabilityofaniso19847shipboarddataserver