eUF: A framework for detecting over-the-air malicious updates in autonomous vehicles

被引:9
|
作者
Qureshi, Anam [1 ]
Marvi, Murk [2 ]
Shamsi, Jawwad Ahmed [1 ]
Aijaz, Adnan [3 ]
机构
[1] Natl Univ Comp & Emerging Sci, Dept Comp Sci, Syst Res Lab, Islamabad, Pakistan
[2] NED Univ Engn & Technol, Dept Comp & Informat Syst Engn, Karachi, Pakistan
[3] Toshiba Europe Ltd, Bristol Res & Innovat Lab, Uxbridge, England
关键词
Autonomous vehicle; Malicious software; Over-the-air; Software update; Uptane framework; SECURITY; INTERNET;
D O I
10.1016/j.jksuci.2021.05.005
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Software updates are highly significant in autonomous vehicles. These updates are utilized to provide enhanced features and updated security mechanisms. In order to ensure scalability and smooth roll-out Over-the-air (OTA) mechanism is a preferred option to propagate a software update. However, this approach is vulnerable to security attacks because of existence of wireless communication channel between the vehicle and the manufacturer. In that, an attacker can replace the legitimate software with a malicious software with an intent to get control over the vehicle. In this work, we are motivated to address this problem. We develop an enhanced uptane framework for detection of malicious OTA soft-ware updates in autonomous vehicles. For enhancing security, we incorporate convolutional neural net-work (CNN) in the uptane framework. The proposed framework is able to distinguish between malicious and benign software executables with high accuracy. For training and testing, we create two datasets by collecting executables of Windows and Linux operating system. We encourage the use of transfer learn-ing by exploiting the developed CNN models in order to detect malicious executable designed for auton-omous vehicles. We also benchmark the CNN models against state-of-the art models. Our work is highly beneficial for the community in providing a secure mechanism for software updates.(c) 2021 The Authors. Published by Elsevier B.V. on behalf of King Saud University. This is an open access article under the CC BY-NC-ND license (http://creativecommons.org/licenses/by-nc-nd/4.0/).
引用
收藏
页码:5456 / 5467
页数:12
相关论文
共 50 条
  • [1] Secure over-the-air software updates in connected vehicles: A survey
    Halder, Subir
    Ghosal, Amrita
    Conti, Mauro
    [J]. COMPUTER NETWORKS, 2020, 178
  • [2] ScalOTA: Scalable Secure Over-the-Air Software Updates for Vehicles
    Shoker, Ali
    Alves, Fernando
    Esteves-Verissimo, Paulo
    [J]. 2023 42ND INTERNATIONAL SYMPOSIUM ON RELIABLE DISTRIBUTED SYSTEMS, SRDS 2023, 2023, : 151 - 161
  • [3] Over-the-Air Updates for Robotic Swarms
    Varadharajan, Vivek Shankar
    St Onge, David
    Guss, Christian
    Beltrame, Giovanni
    [J]. IEEE SOFTWARE, 2018, 35 (02) : 44 - 50
  • [4] Secure and Lightweight ECU Attestations for Resilient Over-the-Air Updates in Connected Vehicles
    Plappert, Christian
    Fuchs, Andreas
    [J]. 39TH ANNUAL COMPUTER SECURITY APPLICATIONS CONFERENCE, ACSAC 2023, 2023, : 283 - 297
  • [5] Exploring the factors driving the sustainable consumer intentions for over-the-air updates in electric vehicles
    Wang, Shanshan
    Khan, Asif
    [J]. ENERGY EXPLORATION & EXPLOITATION, 2024,
  • [6] STRIDE: Scalable and Secure Over-The-Air Software Update Scheme for Autonomous Vehicles
    Ghosal, Amrita
    Haider, Subir
    Conti, Mauro
    [J]. ICC 2020 - 2020 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS (ICC), 2020,
  • [7] The Security Aspects of Automotive Over-the-Air Updates
    Howden, James
    Maglaras, Leandros
    Ferrag, Mohamed Amine
    [J]. INTERNATIONAL JOURNAL OF CYBER WARFARE AND TERRORISM, 2020, 10 (02) : 64 - 81
  • [8] Safe and Secure Automotive Over-the-Air Updates
    Chowdhury, Thomas
    Lesiuta, Eric
    Rikley, Kerianne
    Lin, Chung-Wei
    Kang, Eunsuk
    Kim, BaekGyu
    Shiraishi, Shinichi
    Lawford, Mark
    Wassyng, Alan
    [J]. COMPUTER SAFETY, RELIABILITY, AND SECURITY (SAFECOMP 2018), 2018, 11093 : 172 - 187
  • [9] Secure over-The-Air Firmware Updates for Sensor Networks
    Kerliu, Kevin
    Ross, Alexandra
    Tao, Gong
    Yun, Zelin
    Shi, Zhijie
    Han, Song
    Zhou, Shengli
    [J]. 2019 IEEE 16TH INTERNATIONAL CONFERENCE ON MOBILE AD HOC AND SENSOR SYSTEMS WORKSHOPS (MASSW 2019), 2019, : 97 - 100
  • [10] Edge-Assisted Over-the-Air Software Updates
    Bhattacharjee, Arpan
    Mahmood, Hamza
    Lu, Sidi
    Ammar, Nejib
    Ganlath, Akila
    Shi, Weisong
    [J]. 2023 IEEE 9TH INTERNATIONAL CONFERENCE ON COLLABORATION AND INTERNET COMPUTING, CIC, 2023, : 18 - 27