ArticlePublisher preview available

Exploring the potential of longitudinal power monitoring for detecting physical-layer attacks [Invited]

Optica Publishing Group
Journal of Optical Communications and Networking
Authors:
To read the full-text of this research, you can request a copy directly from the authors.

Abstract and Figures

The recurring cases of suspicious incidents involving optical fiber cables in recent years have exposed the vulnerabilities of modern communication networks. Whether driven by geopolitical tensions, sabotage, or urban vandalism, these disruptions can cause Internet blackouts, compromise user privacy, and, most critically, challenge operators’ reliability in delivering secure connectivity. Moreover, the emergence of such incidents raises key concerns about how effectively network operators can secure thousands of kilometers of deployed fiber without incurring additional costs from expensive monitoring solutions. In this context, the rise of receiver (Rx)-based digital signal processing (DSP) monitoring schemes can serve as a valuable ally. Originally designed for optical performance monitoring—providing insights such as the estimation of the longitudinal power monitoring (LPM) in optical fiber links—these approaches can also play a crucial role in detecting fiber-related attacks, as any attempt to leak or degrade information leaves distinctive optical power signatures that can be revealed by the Rx-DSP. Therefore, this work investigates the effectiveness of LPM in detecting physical-layer attacks. A detailed simulative analysis is conducted for fiber tapping, addressing aspects such as monitoring implementation, security vulnerabilities, and signature recognition. Other attacks, such as quality-of-service degradation and out-of-band jamming via gain competition, are explored qualitatively, offering insights and identifying opportunities for future research.
This content is subject to copyright. Terms and conditions apply.
C30 Vol. 17, No. 7 / July 2025 / Journal of Optical Communications and Networking Research Article
Exploring the potential of longitudinal power
monitoring for detecting physical-layer attacks
[Invited]
Matheus Sena,1,* Abdelrahmane Moawad,2Robert Emmerich,2
Behnam Shariati,2Marc Geitz,1Ralf-Peter Braun,3Johannes Fischer,2
AND Ronald Freund2
1Deutsche Telekom AG, Winterfeldtstraße 21, Berlin 10781, Germany
2Fraunhofer Heinrich Hertz Institute, Einsteinufer 37, Berlin 10587, Germany
3Orbit Gesellschaft für Applikations- und Informationssysteme mbH, Mildred-Scheel-Str. 1, Bonn 53175, Germany
*matheus.ribeiro-sena@telekom.de
Received 3 January 2025; revised 17 February 2025; accepted 21 February 2025; published 20 March 2025
The recurring cases of suspicious incidents involving optical fiber cables in recent years have exposed the vul-
nerabilities of modern communication networks. Whether driven by geopolitical tensions, sabotage, or urban
vandalism, these disruptions can cause Internet blackouts, compromise user privacy, and, most critically, chal-
lenge operators’ reliability in delivering secure connectivity. Moreover, the emergence of such incidents raises key
concerns about how effectively network operators can secure thousands of kilometers of deployed fiber without
incurring additional costs from expensive monitoring solutions. In this context, the rise of receiver (Rx)-based
digital signal processing (DSP) monitoring schemes can serve as a valuable ally. Originally designed for opti-
cal performance monitoring—providing insights such as the estimation of the longitudinal power monitoring
(LPM) in optical fiber links—these approaches can also play a crucial role in detecting fiber-related attacks, as
any attempt to leak or degrade information leaves distinctive optical power signatures that can be revealed by
the Rx-DSP. Therefore, this work investigates the effectiveness of LPM in detecting physical-layer attacks. A
detailed simulative analysis is conducted for fiber tapping, addressing aspects such as monitoring implementa-
tion, security vulnerabilities, and signature recognition. Other attacks, such as quality-of-service degradation and
out-of-band jamming via gain competition, are explored qualitatively, offering insights and identifying oppor-
tunities for future research. © 2025 Optica Publishing Group. All rights, including for text and data mining (TDM), Artificial
Intelligence (AI) training, and similar technologies, are reserved.
https://doi.org/10.1364/JOCN.554766
1. INTRODUCTION
In light of recent events, such as conflicts in Europe and the
Middle East, a growing sense of global geopolitical instability
has emerged [1]. These uncertainties make communication
networks vulnerable targets for “hybrid” warfare, and reports of
sabotage involving submarine optical fiber cables have become
increasingly frequent in the news [2,3]. Given this growing
number of suspicious activities on optical fiber infrastructure
around the world, network operators must adapt to a new
reality and enhance their ability to predict and respond swiftly
to potential threats.
Traditionally, operators rely on monitoring tools such as
optical time-domain reflectometers (OTDRs) to detect power
disturbances along fiber links, exposing potential intrusions
like tappings or breaks [4]. Alternative methods, using phase-
sensitive OTDRs, can identify subtle mechanical vibrations
near the fiber, offering early warnings of suspicious activities
that may signal an attack [5]. However, the high cost and com-
plexity of deploying these solutions at scale across nationwide
or even transcontinental networks pose significant challenges.
Other advanced techniques leverage machine learning (ML)
algorithms to analyze polarization rotations [6] or optical per-
formance monitoring (OPM) indicators, such as bit-error ratio
(BER), chromatic dispersion, and optical signal-to-noise ratio
(OSNR) [7], enabling the identification of attacker signatures
with enhanced precision. Yet, such ML-based models require
computationally intensive training processes and, in security
scenarios, generating sufficient and representative training data
may be complex, as physical-layer attacks are short-lived and
highly variable [8], making it difficult to create datasets that
accurately reflect the diverse nature of potential threats [9].
One promising and more scalable solution lies in harness-
ing the monitoring capabilities of receiver (Rx) digital signal
1943-0620/25/070C30-11 Journal © 2025 Optica Publishing Group
ResearchGate has not been able to resolve any citations for this publication.
Article
Full-text available
This paper presents analytical results on the accuracy of fiber-longitudinal optical power monitoring (LPM) at arbitrary positions. To quantify the accuracy, the position-wise variance and power-profile SNR of LPM are defined and analyzed, yielding formulas for these metrics. Using these metrics, we show that various designs and performance predictions of LPM for a given link and estimation conditions are possible in a unified manner. Specifically, the required SNR to detect a given loss event is first presented. Based on this relation, the design parameters of LPM, such as the sample size and optical power required to detect the loss, are explicitly determined. The performance such as the detectable limit of loss events at individual positions and maximum dynamic range are also specified. These results can be used as a basis for establishing a design principle of LPM.
Article
Full-text available
Ensuring the secure and reliable operation of optical networks is crucial for various societal functions. However, optical network infrastructures are susceptible to unauthorized interception, posing a significant security risk at the physical layer. This necessitates the development of effective detection and localization methods of eavesdropping events. To address this challenge, we present a clustering-based method and a comprehensive eavesdropping diagnosis framework tailored for wavelength division multiplexing (WDM) systems. The framework is designed to handle diverse eavesdropping scenarios, including dynamic detection, classification, and localization of eavesdropping events. To mitigate the data dependency issue while detecting and localizing eavesdropping events, we propose a clustering algorithm utilizing basic optical performance monitoring (OPM) data, thus eliminating the need for sophisticated measurement equipment. A coarse localization requires only the OPM data from the receiver, while a finer localization requires the power monitoring data at all nodes as the input. The feasibility of the proposed scheme is validated using simulation-generated data, in which single and multiple eavesdropping can be detected and localized with a 100% label matching rate. Single-point eavesdropping detection and localization are experimentally validated with data collected from a fiber transmission system comprising three spans of 40 km each. Coarse localization with a 99.79% label matching rate and fine localization with 100% accuracy is achieved. As expected, experimental data shows a less concentrated distribution than the simulated data, which leads to inferior clustering results.
Article
Full-text available
We investigate taper tapping in three types of single-mode fibers using simulations and experiments: Standard single-mode fiber (SMF), bend-resistant single-mode fiber (BR-SMF) with a shallow index trench, and bend-insensitive single-mode fiber (BI-SMF) with a deep index trench. Both trench-assisted fibers demonstrate a larger mode field expansion than the standard single-mode fiber, making them more susceptible to taper-tapping than standard single-mode fibers. Tapering both SSMF and BR-SMF fibers to as little as 25μm diameter results in a high information extraction efficiency for an eavesdropper (≥−20 dB) while maintaining low loss for the legitimate channel (≤1 dB), underlining the vulnerability of all fiber types to taper tapping. We also use optical time-domain reflectometry (OTDR) to identify changes in the fiber before and after tapering. Changes in the back reflected power of ≤0.5 dB and ≤0.25 dB are observed in 25μm tapers in SMF and BR-SMF respectively.
Article
Full-text available
In this paper, we present the design, optimization, and implementation of a sub-wavelength grating (SWG) multi-mode interference coupler (MMI) on the silicon nitride photonic integrated circuit (PIC) platform with a significantly enhanced bandwidth compared to the conventional MMI. We extend the SWG MMI theory, previously presented for the silicon-on-insulator platform, to the Si3N4/SiO2 platform. Our approach involves an initial parameter optimization for a non-paired design, followed by a shift to a paired design that offers a smaller footprint and a broader bandwidth. The optimized SWG MMI exhibits a 1 dB bandwidth of 300 nm for both the insertion loss and power imbalance, making it a significant addition to silicon nitride photonics.
Article
Full-text available
This paper presents a linear least squares method for fiber-longitudinal power profile estimation (PPE), which estimates the optical signal power distribution throughout a fiber-optic link at a coherent receiver. The method finds the global optimum in the least squares estimation of the longitudinal power profiles; thus, its results closely match the true optical power profiles and locate loss anomalies in a link with high spatial resolution. Experimental results show that the method achieves accurate PPE with an RMS error of 0.18 dB from OTDR. Consequently, it successfully identifies a loss anomaly as small as 0.77 dB, demonstrating the potential of a coherent receiver in locating even splice and connector losses. The method is also evaluated under WDM conditions with optimal system fiber launch power, highlighting its feasibility for use in practical operations. Furthermore, the fundamental limit for stable estimation and the spatial resolution of least-squares-based PPE are quantitatively discussed in relation to the ill-posedness of the PPE by evaluating the condition number of the nonlinear perturbation matrix.
Article
Full-text available
This paper presents analytical results on longitudinal power profile estimation (PPE) methods, which visualize signal power evolution in optical fibers at a coherent receiver. The PPE can be formulated as an inverse problem of the nonlinear Schrödinger equation, where the nonlinear coefficient (and thus signal power) is reconstructed from boundary conditions, i.e., transmitted and received signals. Two types of PPE methods are reviewed and analyzed, including correlation-based methods (CMs) and minimum-mean-square-error-based methods (MMSEs). The analytical expressions for their output power profiles and spatial resolution are provided, and thus the theoretical performance limits of the two PPE methods and their differences are clarified. The derived equations indicate that the estimated power profiles of CMs can be understood as the convolution of a true power profile and a smoothing function. Consequently, the spatial resolution and measurement accuracy of CMs are limited, even under noiseless and distortionless conditions. Closed-form formulas for the spatial resolution of CMs are shown to be inversely proportional to the product of a chromatic dispersion coefficient and the square of signal bandwidth. With MMSEs, such a convolution effect is canceled out and the estimated power profiles approach a true power profile under a fine spatial step size.
Article
Full-text available
The development of efficient anomaly detection schemes is a key element for the implementation of autonomous optical networks as they can help telecom operators to automate the location of defective devices and track the overall performance of the network infrastructure. In that regard, the exploitation of receiver based digital signal processing (DSP) for optical performance monitoring has shown to be a promising enabler for detection of spatially resolved and wavelength-dependent properties and anomalies in optical fiber links. In this work, we study the benefits of applying DSP-based longitudinal power estimation on multiple wavelength division multiplexing (WDM) channels allocated in the optical grid to infer wavelength-wise characteristics of a C+L-band optical line system. In that context, we show that the applied scheme can successfully recreate a visualization of the spatial evolution of the gain tilt imposed by in-line optical amplifiers. Additionally, we propose the utilization of advanced DSP tools based on wavelet-denoising to enhance the performance of an anomaly detection approach. The proposed method not only can improve accuracy of the fault location, by reducing positioning uncertainty, but it also delivers more uniform readings of the anomaly signatures.
Conference Paper
We propose a methodology that uses polarization state changes and machine learning to detect and classify eavesdropping, harmful, and non-harmful events in the optical fiber network. Our solution achieves 92.3% accuracy over 13 experimental scenarios.
Conference Paper
We experimentally demonstrate the fiber-longitudinal power profile estimation (PPE) over the S+C+L band, which captures power transition in the propagation direction due to inter-band stimulated Raman scattering only using receiver-side signal processing.