Security-Aware Obfuscated Priority Assignment for Automotive CAN Platforms

被引:22
|
作者
Lukasiewycz, Martin [1 ]
Mundhenk, Philipp [1 ]
Steinhorst, Sebastian [1 ]
机构
[1] TUM CREATE Ltd, Singapore, Singapore
基金
新加坡国家研究基金会;
关键词
Design; Algorithms; Performance; CAN; priority assignment; automotive; security; CONTROLLER-AREA-NETWORK; OPTIMIZATION;
D O I
10.1145/2831232
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Security in automotive in-vehicle networks is an increasing problem with the growing connectedness of road vehicles. This article proposes a security-aware priority assignment for automotive controller area network (CAN) platforms with the aim of mitigating scaling effects of attacks on vehicle fleets. CAN is the dominating field bus in the automotive domain due to its simplicity, low cost, and robustness. While messages might be encrypted to enhance the security of CAN systems, their priorities are usually identical for automotive platforms, comprising generally a large number of vehicle models. As a result, the identifier uniquely defines which message is sent, allowing attacks to scale across a fleet of vehicles with the same platform. As a remedy, we propose a methodology that is capable of determining obfuscated message identifiers for each individual vehicle. Since identifiers directly represent message priorities, the approach has to take the resulting response time variations into account while satisfying application deadlines for each vehicle schedule separately. Our approach relies on Quadratically Constrained Quadratic Program (QCQP) solving in two stages, specifying first a set of feasible fixed priorities and subsequently bounded priorities for each message. With the obtained bounds, obfuscated identifiers are determined, using a very fast randomized sampling. The experimental results, consisting of a large set of synthetic test cases and a realistic case study, give evidence of the efficiency of the proposed approach in terms of scalability. The results also show that the diversity of obtained identifiers is effectively optimized with our approach, resulting in a very good obfuscation of CAN messages in in-vehicle communication.
引用
收藏
页数:27
相关论文
共 50 条
  • [31] Asset-Centric Security-Aware Service Selection
    Tziakouris, Giannis
    Zinonos, Marios
    Chothia, Tom
    Bahsoon, Rami
    2016 IEEE INTERNATIONAL CONGRESS ON BIG DATA - BIGDATA CONGRESS 2016, 2016, : 327 - 332
  • [32] Security-Aware Synthesis of Human-UAV Protocols
    Elfar, Mahmoud
    Zhu, Haibei
    Cummings, M. L.
    Pajic, Miroslav
    2019 INTERNATIONAL CONFERENCE ON ROBOTICS AND AUTOMATION (ICRA), 2019, : 8011 - 8017
  • [33] Task and message priority assignment in automotive systems
    Richard, M
    Richard, P
    Cottet, F
    FIELDBUS SYSTEMS AND THEIR APPLICATIONOS 2001 (FET'2001), 2002, : 135 - 142
  • [34] Security-Aware Resource Binding to Enhance Logic Obfuscation
    Zuzak, Michael
    Liu, Yuntao
    Srivastava, Ankur
    IEEE TRANSACTIONS ON COMPUTER-AIDED DESIGN OF INTEGRATED CIRCUITS AND SYSTEMS, 2023, 42 (12) : 4528 - 4540
  • [35] A Security-aware Approach to JXTA-Overlay Primitives
    Amedo-Moreno, Joan
    Matsuo, Keita
    Barolli, Leonard
    Xhafa, Fatos
    2009 INTERNATIONAL CONFERENCE ON PARALLEL PROCESSING WORKSHOPS (ICPPW 2009), 2009, : 431 - +
  • [36] Security-Aware Deployment Optimization of Cloud-Edge Systems in Industrial IoT
    Casola, Valentina
    De Benedictis, Alessandra
    Di Martino, Sergio
    Mazzocca, Nicola
    Starace, Luigi Libero Lucio
    IEEE INTERNET OF THINGS JOURNAL, 2021, 8 (16) : 12724 - 12733
  • [37] Security-aware multi-objective optimization of distributed reconfigurable embedded systems
    Nam, Hyunsuk
    Lysecky, Roman
    JOURNAL OF PARALLEL AND DISTRIBUTED COMPUTING, 2019, 133 : 377 - 390
  • [38] Towards a Security-Aware Benchmarking Framework for Function-as-a-Service
    Pellegrini, Roland
    Ivkic, Igor
    Tauber, Markus
    CLOSER: PROCEEDINGS OF THE 8TH INTERNATIONAL CONFERENCE ON CLOUD COMPUTING AND SERVICES SCIENCE, 2018, : 666 - 669
  • [39] Reinforcement Learning for Security-Aware Computation Offloading in Satellite Networks
    Sthapit, Saurav
    Lakshminarayana, Subhash
    He, Ligang
    Epiphaniou, Gregory
    Maple, Carsten
    IEEE INTERNET OF THINGS JOURNAL, 2021, 9 (14) : 12351 - 12363
  • [40] Hardware variant NSP with security-aware automated preferential algorithm
    Paul, Rourab
    Sikder, Gitesh
    Chakrabarti, Amlan
    Ghosh, Ranjan
    IET COMPUTERS AND DIGITAL TECHNIQUES, 2018, 12 (05) : 192 - 205