Viden: Attacker Identification on In-Vehicle Networks

被引:158
作者
Cho, Kyong-Tak [1 ]
Shin, Kang G. [1 ]
机构
[1] Univ Michigan, Ann Arbor, MI 48109 USA
来源
CCS'17: PROCEEDINGS OF THE 2017 ACM SIGSAC CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY | 2017年
关键词
Automotive Security; CAN bus; Attacker Identification;
D O I
10.1145/3133956.3134001
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Various defense schemes-which determine the presence of an attack on the in-vehicle network-have recently been proposed. However, they fail to identify which Electronic Control Unit (ECU) actually mounted the attack. Clearly, pinpointing the attacker ECU is essential for fast/efficient forensic, isolation, security patch, etc. To meet this need, we propose a novel scheme, called Viden (Voltage-based attacker identification), which can identify the attacker ECU by measuring and utilizing voltages on the in-vehicle network. The first phase of Viden, called ACK learning, determines whether or not the measured voltage signals really originate from the genuine message transmitter. Viden then exploits the voltage measurements to construct and update the transmitter ECUs' voltage profiles as their fingerprints. It finally uses the voltage profiles to identify the attacker ECU. Since Viden adapts its profiles to changes inside/outside of the vehicle, it can pinpoint the attacker ECU under various conditions. Moreover, its efficiency and design-compliance with modern in-vehicle network implementations make Viden practical and easily deployable. Our extensive experimental evaluations on both a CAN bus prototype and two real vehicles have shown that Viden can accurately fingerprint ECUs based solely on voltage measurements and thus identify the attacker ECU with a low false identification rate of 0.2%.
引用
收藏
页码:1109 / 1123
页数:15
相关论文
共 34 条
[1]  
AMPG Body Electronics Systems Engineering Team, 2017, FUT ADV BOD EL
[2]  
[Anonymous], 2003, COMM HIGH SPEED PHYS
[3]  
[Anonymous], 2016, TCAN1051 FAULT PROTE
[4]  
[Anonymous], 2015, Hackers Remotely Kill a Jeep on the Highway, With Me in It
[5]  
[Anonymous], 2015, ILLMATICS
[6]  
[Anonymous], 2002, MICROCHIP AN228 CAN
[7]  
[Anonymous], 2016, TESLA RESPONDS CHINE
[8]  
[Anonymous], 2003, ROAD VEH CONTR AR NE
[9]  
[Anonymous], 2010, CAN CANBUS CAN PROTO
[10]  
[Anonymous], 1991, CAN SPECIFICATION VE