首页> 外文OA文献 >Détection d'intrusion pour des réseaux embarqués automobiles : une approche orientée langage
【2h】

Détection d'intrusion pour des réseaux embarqués automobiles : une approche orientée langage

机译:汽车嵌入式网络的入侵检测:一种面向语言的方法

摘要

In today’s automobiles, embedded computers, or ECUs (Electronic Control Units) are responsible for an increasing number of features in a vehicle. In order to coordinate their actions, these computers are able to exchange data over communication buses, effectively constituting an embedded network. While this network could previously be considered a closed system, the addition of means of communication in automobiles has opened this network to the outside world, thus raising many security issues. Our research work focuses on these issues and aims at proposing efficient architectural security mechanisms for protecting embedded automotive networks. The security of embedded automotive systems being a relatively recent topic, we first put a strong focus on defining the context. For that purpose, we describe the threats that can target a car’s embedded systems, provide a classification of the possible attack scenarios and present a survey of protection mechanisms in embedded automotive networks. Then, in order to complement the preventive security means that aim at stopping an attacker from entering the embedded network, we introduce an Intrusion Detection System (IDS) fit for vehicular networks. Leveraging the high predictability of embedded automotive systems, we use language theory to elaborate a set of attack signatures derived from behavioral models of the automotive calculators in order to detect a malicious sequence of messages transiting through the internal network. After a formal description of our IDS, we present a first batch of experiments aimed at validating our approach and assessing its performances.
机译:在当今的汽车中,嵌入式计算机或ECU(电子控制单元)是车辆中越来越多的功能部件。为了协调其行为,这些计算机能够通过通信总线交换数据,从而有效地构成了嵌入式网络。尽管以前可以将此网络视为封闭系统,但是汽车通讯工具的增加使该网络向外界开放,从而引发了许多安全问题。我们的研究工作集中在这些问题上,旨在提出有效的体系结构安全机制来保护嵌入式汽车网络。嵌入式汽车系统的安全性是一个相对较新的话题,我们首先将重点放在定义上下文上。为此,我们描述了可以针对汽车嵌入式系统的威胁,提供了可能的攻击场景的分类,并对嵌入式汽车网络中的保护机制进行了概述。然后,为了补充旨在阻止攻击者进入嵌入式网络的预防性安全措施,我们引入了适用于车载网络的入侵检测系统(IDS)。利用嵌入式汽车系统的高度可预测性,我们使用语言理论来阐述一组从汽车计算器的行为模型得出的攻击特征,以便检测通过内部网络传输的恶意消息序列。在对我们的IDS进行正式描述之后,我们提出了第一批实验,旨在验证我们的方法并评估其性能。

著录项

  • 作者

    Studnia Ivan;

  • 作者单位
  • 年度 2015
  • 总页数
  • 原文格式 PDF
  • 正文语种 fr
  • 中图分类

相似文献

  • 外文文献
  • 中文文献
  • 专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号