首页> 外文会议>Verein Deutscher Ingenieure/VW-Gemeinschaftstagung Automotive Security >Exemplary Automotive Attack Scenarios: Trojan Horses for Electronic Throttle Control System (ETC) and Replay Attacks on the Power Window System
【24h】

Exemplary Automotive Attack Scenarios: Trojan Horses for Electronic Throttle Control System (ETC) and Replay Attacks on the Power Window System

机译:示例性汽车攻击情景:用于电子节气门控制系统(ETC)的特洛伊木马和电源窗口系统的重放攻击

获取原文

摘要

The consideration of targeted security attacks is not yet common in the automotive domain where primarily safety requirements are considered. Hence this survey addresses the relatively new field of IT-security in automotive technology in order to motivate further research. With the emergence of automotive technologies like car-to-car (c2c) communication, the challenges increase. In order to show the necessity for such research we describe how in theory, a potential attack on the Electronic Throttle Control (ETC) could succeed, if no countermeasures are taken, with potentially drastic consequences on the safety of the vehicle, its occupants and its environment as a result. Also an attack on the power window system is shown using the implementation techniques already employed in the design of automotive components. Our goal is to show, that such exploited security vulnerabilities are likely to have serious consequences with respect to the vehicles safety. Therefore such attacks need to be considered and suitable countermeasures have to be identified. In order to achieve this, the connection of the two disciplines Safety and Security for automotive IT components needs to be discussed. We introduce two exemplary attacks, the Trojan Horse targeting at the Electronic Throttle Control System (ETC) and a replay attack on the electric window lift. The first attack is mainly discussed in theory, the second is elaborated in a practical simulation scenario. Finally we introduce a general investigation of potential ways of intrusion and present some first practical results from tests with current automotive hardware.
机译:在主要安全要求的汽车领域中,对目标安全攻击的考虑尚不常见。因此,该调查解决了汽车技术中的IT安全领域的相对较新的领域,以便激励进一步研究。随着汽车技术等汽车技术的出现(C2C)沟通,挑战增加。为了展示这种研究的必要性,我们描述了理论上如何,如果没有采取对策,则对电子节气门控制(ETC)的潜在攻击可能成功,如果没有对策,对车辆安全的潜在剧烈后果,其乘客及其占用者因此环境。此外,使用在汽车组件的设计中已经采用的实现技术示出了对电源窗口系统的攻击。我们的目标是展示,这种利用的安全漏洞可能对车辆安全产生严重后果。因此,需要考虑这种攻击,并且必须识别适当的对策。为了实现这一目标,需要讨论两所学科的安全和安全性的安全性。我们介绍了两个示例性攻击,瞄准电子节流控制系统(ETC)的特洛伊木马和电动车窗升降机的重播攻击。第一攻击主要讨论理论上,第二个攻击在实际模拟场景中详细阐述。最后,我们介绍了对潜在的入侵方式的一般性调查,并通过当前汽车硬件的测试提供了一些第一实际结果。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号