Avionics News April 2023 - 44

CYBER RESILIENCE
Continued from page 42
or when they use simple Wi-Fi passwords, such as the
company's name or the aircraft's tail number, instead of
complex passwords. " If proper security measures aren't in
place, it's not hard if you're a hacker to figure it out and get
on the network, " Huntoon said. Many flight departments
intentionally try to keep passwords on the aircraft simple,
but that makes it easy to hack into those systems, he
warned.
" Flight departments should create an SOP that
incorporates these kinds of steps. It's fundamental, "
Wheeler said. " If someone knows your root password
and it's common, unless you change that root password,
anyone can go in and change it. Satcom Direct is big on
QR codes that allow flight crews to immediately connect to
networks securely and make it easier for crews to update the
password. "
Aviation departments also can prioritize patching and
hardening networks to address security flaws. Avionics
professionals should make sure they have the latest
firmware installed in all devices and have updated aircraft
avionics, recommended Wheeler, who noted that Satcom
Direct provides new firmware updates quarterly to address
vulnerabilities.
Cabin routers should be updated routinely. " Some
don't want to change routinely, but building a policy
for flight operations teams to harden and patch onboard
equipment is huge, " Wheeler said. " It's something we can
do without inconveniencing passengers. Your risk goes
down exponentially if you do a few easy things on the
aircraft. How you design your Wi-Fi in the cabin can make a
difference, and the threat profile can drop drastically. "
Other ways to boost cybersecurity
A big piece of cybersecurity is training, Wheeler noted.
Requiring a little bit of training on cybersecurity for both
flight department staff and passengers goes a long way in
protecting not only the integrity of aircraft systems, but
also the privacy of passengers and a company's intellectual
property.
Wheeler recommended that whenever the flight
department upgrades an aircraft's primary satcom system or
other avionics systems providing connectivity, they should
ask questions of those in the corporate office who'll be flying
for business, such as " do you know your mission? " and " will
you have corporate travelers and guests? "
These sorts of questions will help flight crews learn what
the passenger needs and expectations are, so they can secure
44 avionics news * april 2023
the aircraft against cyberattacks with minimum disruption or
inconvenience to passengers before they ever board.
Aside from requiring all passengers to use robust network
passwords and change them regularly, crews who are
looking to prevent the use of compromised devices on a
flight have several other options to help vet devices and
protect data, such as:
*
*
Assign different passwords to employees versus
guests.
Require everyone on board to update their device
software before boarding, including phones, laptops
and tablets.
* Request to scan each phone or device before each
passenger boards.
Treating the corporate aircraft as an extension of the
corporate office from an IT perspective is a useful exercise
for the flight department to undertake. " If our most senior
people with the most delicate information are riding in the
back of the aircraft, we need to protect them the same as
when they're in a boardroom, " Huntoon said. He suggested
that flight operations teams create user profiles that provide
different levels of customer interface and access for different
categories of passenger.
Ultimately, Huntoon asserted that more security is better
than less.
" Seek as many people out as possible, have as many
conversations as possible, and get the company's IT people
involved with the corporate flight department, " he said.
" Whether it's VPNs, safety protocols, or greater awareness
of an asset flying around the world where people are trying
to steal information, getting the IT department involved
helps a flight department ensure they're doing everything
possible to protect a company's information. "
When it comes to international flights, companies should
perform threat assessments and create threat profiles by
location, recommended Wheeler. Passengers and crews
should use loaner laptops on such trips and use VPNs while
staying in hotel rooms. Upon return to home base, crews
should perform cybersecurity sweeps of the aircraft and all
devices on board.
Flight crews and their passengers also should have
situational awareness when traveling abroad. Wheeler
recommends " locationally based practices " when flying
internationally. " Location-based risk assessment is easy and
can be done ahead of time to avert certain risks, combined
with what assets you're allowing on board. It's being
more cognizant of what devices are connecting up on your
network and where. "
Continued on page 46

Avionics News April 2023

Table of Contents for the Digital Edition of Avionics News April 2023

Avionics News April 2023 - Intro
Avionics News April 2023 - Cover1
Avionics News April 2023 - Cover2
Avionics News April 2023 - 1
Avionics News April 2023 - 2
Avionics News April 2023 - 3
Avionics News April 2023 - 4
Avionics News April 2023 - 5
Avionics News April 2023 - 6
Avionics News April 2023 - 7
Avionics News April 2023 - 8
Avionics News April 2023 - 9
Avionics News April 2023 - 10
Avionics News April 2023 - 11
Avionics News April 2023 - 12
Avionics News April 2023 - 13
Avionics News April 2023 - 14
Avionics News April 2023 - 15
Avionics News April 2023 - 16
Avionics News April 2023 - 17
Avionics News April 2023 - 18
Avionics News April 2023 - 19
Avionics News April 2023 - 20
Avionics News April 2023 - 21
Avionics News April 2023 - 22
Avionics News April 2023 - 23
Avionics News April 2023 - 24
Avionics News April 2023 - 25
Avionics News April 2023 - 26
Avionics News April 2023 - 27
Avionics News April 2023 - 28
Avionics News April 2023 - 29
Avionics News April 2023 - 30
Avionics News April 2023 - 31
Avionics News April 2023 - 32
Avionics News April 2023 - 33
Avionics News April 2023 - 34
Avionics News April 2023 - 35
Avionics News April 2023 - 36
Avionics News April 2023 - 37
Avionics News April 2023 - 38
Avionics News April 2023 - 39
Avionics News April 2023 - 40
Avionics News April 2023 - 41
Avionics News April 2023 - 42
Avionics News April 2023 - 43
Avionics News April 2023 - 44
Avionics News April 2023 - 45
Avionics News April 2023 - 46
Avionics News April 2023 - 47
Avionics News April 2023 - 48
Avionics News April 2023 - 49
Avionics News April 2023 - 50
Avionics News April 2023 - 51
Avionics News April 2023 - 52
Avionics News April 2023 - 53
Avionics News April 2023 - 54
Avionics News April 2023 - 55
Avionics News April 2023 - 56
Avionics News April 2023 - 57
Avionics News April 2023 - 58
Avionics News April 2023 - 59
Avionics News April 2023 - 60
Avionics News April 2023 - 61
Avionics News April 2023 - 62
Avionics News April 2023 - 63
Avionics News April 2023 - 64
Avionics News April 2023 - 65
Avionics News April 2023 - 66
Avionics News April 2023 - 67
Avionics News April 2023 - 68
Avionics News April 2023 - 69
Avionics News April 2023 - 70
Avionics News April 2023 - 71
Avionics News April 2023 - 72
Avionics News April 2023 - Cover3
Avionics News April 2023 - Cover4
https://www.nxtbook.com/allen/avne/60-10
https://www.nxtbook.com/allen/avne/60-9
https://www.nxtbook.com/allen/avne/60-8
https://www.nxtbook.com/allen/avne/60-7
https://www.nxtbook.com/allen/avne/60-6
https://www.nxtbook.com/allen/avne/60-5
https://www.nxtbook.com/allen/avne/60-4
https://www.nxtbook.com/allen/avne/60-3
https://www.nxtbook.com/allen/avne/60-2
https://www.nxtbook.com/allen/avne/60-1
https://www.nxtbook.com/allen/avne/59-12
https://www.nxtbook.com/allen/avne/59-11
https://www.nxtbook.com/allen/avne/59-10
https://www.nxtbook.com/allen/avne/59-9
https://www.nxtbook.com/allen/avne/59-8
https://www.nxtbook.com/allen/avne/59-7
https://www.nxtbook.com/allen/avne/59-6
https://www.nxtbook.com/allen/avne/59-5
https://www.nxtbook.com/allen/avne/59-4
https://www.nxtbook.com/allen/avne/59-3
https://www.nxtbook.com/allen/avne/59-2
https://www.nxtbook.com/allen/avne/59-1
http://www.brightcopy.net/allen/avne/58-12
http://www.brightcopy.net/allen/avne/58-11
http://www.brightcopy.net/allen/avne/58-10
http://www.brightcopy.net/allen/avne/58-9
http://www.brightcopy.net/allen/avne/58-8
http://www.brightcopy.net/allen/avne/58-7
http://www.brightcopy.net/allen/avne/58-6
http://www.brightcopy.net/allen/avne/58-5
http://www.brightcopy.net/allen/avne/58-4
http://www.brightcopy.net/allen/avne/58-3
http://www.brightcopy.net/allen/avne/58-2
http://www.brightcopy.net/allen/avne/58-1
http://www.brightcopy.net/allen/avne/57-12
http://www.brightcopy.net/allen/avne/57-11
http://www.brightcopy.net/allen/avne/57-10
http://www.brightcopy.net/allen/avne/57-9
http://www.brightcopy.net/allen/avne/57-8
http://www.brightcopy.net/allen/avne/57-7
http://www.brightcopy.net/allen/avne/57-6
http://www.brightcopy.net/allen/avne/57-5
http://www.brightcopy.net/allen/avne/57-4
http://www.brightcopy.net/allen/avne/57-3
http://www.brightcopy.net/allen/avne/57-2
http://www.brightcopy.net/allen/avne/57-1
http://www.brightcopy.net/allen/avne/56-12
http://www.brightcopy.net/allen/avne/56-11
http://www.brightcopy.net/allen/avne/56-10
http://www.brightcopy.net/allen/avne/56-9
http://www.brightcopy.net/allen/avne/56-8
http://www.brightcopy.net/allen/avne/56-7
http://www.brightcopy.net/allen/avne/56-6
http://www.brightcopy.net/allen/avne/56-5
http://www.brightcopy.net/allen/avne/56-4
http://www.brightcopy.net/allen/avne/56-3
http://www.brightcopy.net/allen/avne/56-2
http://www.brightcopy.net/allen/avne/56-1
http://www.brightcopy.net/allen/avne/55-12
http://www.brightcopy.net/allen/avne/55-11
http://www.brightcopy.net/allen/avne/55-10
http://www.brightcopy.net/allen/avne/55-9
http://www.brightcopy.net/allen/avne/55-8
http://www.brightcopy.net/allen/avne/55-7
http://www.brightcopy.net/allen/avne/55-6
http://www.brightcopy.net/allen/avne/55-5
http://www.brightcopy.net/allen/avne/55-4
http://www.brightcopy.net/allen/avne/55-3
http://www.brightcopy.net/allen/avne/55-02
http://www.brightcopy.net/allen/avne/55-01
http://www.brightcopy.net/allen/avne/54-12
http://www.brightcopy.net/allen/avne/54-11
http://www.brightcopy.net/allen/avne/54-10
http://www.brightcopy.net/allen/avne/54-9
http://www.brightcopy.net/allen/avne/54-8
http://www.brightcopy.net/allen/avne/54-7
http://www.brightcopy.net/allen/avne/54-6
http://www.brightcopy.net/allen/avne/54-5
http://www.brightcopy.net/allen/avne/54-4
http://www.brightcopy.net/allen/avne/54-3
http://www.brightcopy.net/allen/avne/54-2
http://www.brightcopy.net/allen/avne/54-1
http://www.brightcopy.net/allen/avne/53-12
http://www.brightcopy.net/allen/avne/53-11
http://www.brightcopy.net/allen/avne/53-10
http://www.brightcopy.net/allen/avne/53-9
http://www.brightcopy.net/allen/avne/53-8
http://www.brightcopy.net/allen/avne/53-7
http://www.brightcopy.net/allen/avne/53-6
http://www.brightcopy.net/allen/avne/53-5
http://www.brightcopy.net/allen/avne/53-4
http://www.brightcopy.net/allen/avne/53-3
http://www.brightcopy.net/allen/avne/53-2
http://www.brightcopy.net/allen/avne/53-1
http://www.brightcopy.net/allen/avne/52-12
http://www.brightcopy.net/allen/avne/52-11
http://www.brightcopy.net/allen/avne/52-10
http://www.brightcopy.net/allen/avne/52-9
http://www.brightcopy.net/allen/avne/52-8
https://www.nxtbook.com/allen/avne/52-7
https://www.nxtbook.com/allen/avne/52-6
https://www.nxtbook.com/allen/avne/52-5
https://www.nxtbook.com/allen/avne/52-4
https://www.nxtbook.com/allen/avne/52-3
https://www.nxtbook.com/allen/avne/52-2
https://www.nxtbook.com/allen/avne/52-1
https://www.nxtbook.com/allen/avne/51-12
https://www.nxtbook.com/allen/avne/51-11
https://www.nxtbook.com/allen/avne/51-10
https://www.nxtbook.com/allen/avne/51-9
https://www.nxtbook.com/allen/avne/51-8
https://www.nxtbook.com/allen/avne/51-7
https://www.nxtbook.com/allen/avne/51-6
https://www.nxtbook.com/allen/avne/51-5
https://www.nxtbook.com/allen/avne/51-4
https://www.nxtbook.com/allen/avne/51-3
https://www.nxtbook.com/allen/avne/51-2
https://www.nxtbook.com/allen/avne/51-1
https://www.nxtbook.com/allen/avne/50-12
https://www.nxtbook.com/allen/avne/50-11
https://www.nxtbook.com/allen/avne/50-10
https://www.nxtbook.com/allen/avne/50-9
https://www.nxtbook.com/allen/avne/50-8
https://www.nxtbook.com/allen/avne/50-7
https://www.nxtbook.com/allen/avne/50-6
https://www.nxtbook.com/allen/avne/50-5
https://www.nxtbook.com/allen/avne/50-4
https://www.nxtbook.com/allen/avne/50-3
https://www.nxtbook.com/allen/avne/50-2
https://www.nxtbook.com/allen/avne/50-1
https://www.nxtbook.com/allen/avne/49-12
https://www.nxtbook.com/allen/avne/49-11
https://www.nxtbook.com/allen/avne/49-10
https://www.nxtbook.com/allen/avne/49-9
https://www.nxtbook.com/allen/avne/49-8
https://www.nxtbook.com/allen/avne/49-7
https://www.nxtbook.com/allen/avne/49-6
https://www.nxtbook.com/allen/avne/49-5
https://www.nxtbook.com/allen/avne/49-4
https://www.nxtbook.com/allen/avne/49-3
https://www.nxtbook.com/allen/avne/49-2
https://www.nxtbook.com/allen/avne/49-1
https://www.nxtbook.com/allen/avne/48-12
https://www.nxtbook.com/allen/avne/48-11
https://www.nxtbookmedia.com