A Non-Line-of-Sight, Multi-Modality-based Side-Channel IP Theft Attack on Additive Manufacturing Using Dual Smartphones

2026-06-30Cryptography and Security

Cryptography and Security
AI summary

The authors show that 3D printers can leak important information, like the instructions (G-code) used to print objects, through sounds and magnetic signals they give off. They used two smartphones placed a short distance away to secretly capture these signals without needing special equipment or a direct view. Their method was very accurate, successfully figuring out nearly all the printing commands, even on different printers and in different places. This reveals a security risk for 3D printing, where sensitive design files can be stolen without physical access.

Additive Manufacturing3D PrintingG-codeSide-channel AttackIntellectual PropertyAcoustic EmissionsMagnetic EmissionsSmartphone SensorsData ReconstructionInformation Security
Authors
Amirhossein Jamarani, Diba Afroze, Yazhou Tu, Mark Yampolskiy, Xiali Hei
Abstract
Additive Manufacturing (AM) has revolutionized major sectors, including aerospace, automotive, and healthcare, by enabling adjustable production. As the usage of AM increases, so does the risk of Intellectual Property (IP) leakage during the printing process due to unintended side-channel emissions. Current studies and attack scenarios on 3D printers face three challenges: low success and accuracy rates in final G-code reconstruction, limited distance range for attacking the 3D printer's IP, and reliance on specialized, overt data-collection tools. This paper presents a side-channel attack that addresses the noted limitations by using two smartphones' internal sensors. We position the smartphones 60 cm away in a non-line-of-sight setup to collect the 3D printer's acoustic and magnetic emissions. Our attack successfully reconstructs the G-code commands of the final objects at a rate of 98.89% on command-level reconstruction accuracy. Additionally, we evaluate the transferability of our attack strategy by applying it to another 3D printer in a different environment. Our proven unauthorized access to the reconstructed G-code and thus to the IP of the AM system indicates the security weaknesses in 3D printing, highlighting the need for mitigating side-channel attacks.