论文标题
机器人黑客手册(RHM)
Robot Hacking Manual (RHM)
论文作者
论文摘要
机器人通常是不安全的,在某些情况下完全没有保护。背后的理由是四倍:首先,机器人的防御性安全机制仍处于早期阶段,而不是涵盖完整的威胁格局。其次,机器人系统的固有复杂性在技术上和经济上都使其具有昂贵的保护。第三,机器人供应商通常不会及时承担责任,从而将零日的曝光窗口(直到减轻零日的时间)平均为几年。第四,与21世纪的常识期望相反,与1920年代的福特相似,大多数机器人制造商都反对或艰难的机器人维修。 《机器人黑客手册》(RHM)是有关机器人网络安全的介绍性系列,试图提供全面的案例研究和逐步的教程,目的是提高该领域的认识并强调采用安全第一方法的重要性。这里可用的材料也是个人学习尝试,它与任何特定组织都断开了连接。内容是按原样提供的,绝不会鼓励或促进对机器人系统或相关技术的未经授权篡改。
Robots are often shipped insecure and in some cases fully unprotected. The rationale behind is fourfold: first, defensive security mechanisms for robots are still on their early stages, not covering the complete threat landscape. Second, the inherent complexity of robotic systems makes their protection costly, both technically and economically. Third, robot vendors do not generally take responsibility in a timely manner, extending the zero-days exposure window (time until mitigation of a zero-day) to several years on average. Fourth, contrary to the common-sense expectations in 21st century and similar to Ford in the 1920s with cars, most robot manufacturers oppose or difficult robot repairs. The Robot Hacking Manual (RHM) is an introductory series about cybersecurity for robots, with an attempt to provide comprehensive case studies and step-by-step tutorials with the intent to raise awareness in the field and highlight the importance of taking a security-first approach. The material available here is also a personal learning attempt and it's disconnected from any particular organization. Content is provided as is and by no means it's encouraged or promoted the unauthorized tampering of robotic systems or related technologies.