> For the complete documentation index, see [llms.txt](https://moharat.gitbook.io/cylabs/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://moharat.gitbook.io/cylabs/industry-specific-security-case-studies/aviation-security-1.md).

# Aviation Security

Access Control Systems

* Access card security
* Access card audit logs
* What kind of Access cards are in use ?
* * Mag stripe
  * PIN
* Is the Access Card work's at multiple locations ?

&#x20;

Tools : Proxmark

&#x20;

&#x20;

Building Management

* Building Management System
* HVAC
* Industrial process controllers

&#x20;

Check In Systems

* Check in Desktops
* Kiosk Machines
* * Self-check kiosk's

&#x20;

Baggage Handling

* Industrial controllers
* OT/IOT/PLC's
* Note: Need network segmentation for these devices , dedicated serial network

&#x20;

Flight Display Systems

* Note: Bristol Airport Ransomware Attack

&#x20;

CCTV

* Security key management
* Device vulnerabilities

&#x20;

Airside Security

* Electronic passport gates
* Security scanning
* X-Ray Machines

&#x20;

Network Segregation

* Law enforcement network and Airport Network

&#x20;

Airside Concessions

* Check in desks
* Concession Spaces

&#x20;

WIFI

* Electronic flight bags
* Aviation devices
* Spoofing attacks
* Evil twin attacks

&#x20;

&#x20;

Airside Systems:

* Ground power system network connections/monitoring
* Ground control and power systems
* OT/IOT devices in the scope

&#x20;

Airside Vehicles

* ADS-B : Radar communications
* Rogue signals with SDR

&#x20;

Pushback Tugs

* Robot Tugs using Remote control

&#x20;

Airside  RF

* Ground Navigational Systems

&#x20;

Docking System

* Infrared Lasers

&#x20;

Briefing Systems\
\- pilot briefing systems

&#x20;

Gate link

Run way lighting

&#x20;

&#x20;

&#x20;

Reference:

<https://www.pentestpartners.com/security-blog/mapping-the-attack-surface-of-an-airport/>

&#x20;

&#x20;

&#x20;

&#x20;

&#x20;

&#x20;
