SecMonQ: An HSM based security monitoring approach for protecting AUTOSAR safety-critical systems

被引:4
|
作者
Nasser, Ahmad M. K. [1 ]
Ma, Di [1 ]
机构
[1] Univ Michigan, Comp Informat Sci, Dearborn, MI 48128 USA
关键词
Cyber physical systems; HSM; Trusted computing; Security monitors; Safety-critical systems;
D O I
10.1016/j.vehcom.2019.100201
中图分类号
TN [电子技术、通信技术];
学科分类号
0809 ;
摘要
Many attacks on vehicle systems that result in a safety hazard follow a general pattern in which ECU firmware is modified, or code is injected in order to send spoofed CAN messages to safety-critical components causing an unsafe driving situation. There is a general consensus that protecting vehicles requires a defense in depth approach where protections are added at each layer of the vehicle data architecture. At the vehicle CAN bus layer, two powerful countermeasures exist: message authentication/encryption and network intrusion detection systems. The two approaches assume that an attacker has already managed to reach the CAN bus and therefore attempt to limit his impact. To defend against CAN injection attacks, we propose an alternative approach which aims at stopping a CAN injection attack before it reaches the vehicle bus. The proposed approach, working at the ECU level, leverages the embedded hardware security module (HSM), available in modern automotive ECUs, to implement four security monitors (SecMonQ) that run within the HSM firmware. SecMonQ performs continuous monitoring activities of the ECU firmware integrity, communication peripherals, periodic task timing, and flow sequence of certain critical functions. It is designed to detect an active attack and bring the system back to a safe state within the safety defined fault tolerant time. We implement SecMonQ on an automotive development environment which consists of an Elektrobit AUTOSAR stack and a Renesas RH850 F1KM micro-controller. We evaluate SecMonQ against the CAN masquerading attack to demonstrate efficacy while maintaining compatibility with AUTOSAR. (C) 2019 Elsevier Inc. All rights reserved.
引用
收藏
页数:15
相关论文
共 50 条
  • [41] Managing security evidence in safety-critical organizations
    Mohamad, Mazen
    Steghoefer, Jan-Philipp
    Knauss, Eric
    Scandariato, Riccardo
    [J]. JOURNAL OF SYSTEMS AND SOFTWARE, 2024, 214
  • [42] DEBUGGING LOGIC-BASED REQUIREMENTS SPECIFICATIONS FOR SAFETY-CRITICAL SYSTEMS - A FRORL APPROACH
    TSAI, JJP
    LIU, A
    NAIR, K
    [J]. INTERNATIONAL JOURNAL OF SOFTWARE ENGINEERING AND KNOWLEDGE ENGINEERING, 1994, 4 (02) : 205 - 228
  • [43] AADL-based Safety Analysis Approaches for Safety-Critical Systems
    Wei, Xiaomin
    [J]. 2019 IEEE 12TH CONFERENCE ON SOFTWARE TESTING, VALIDATION AND VERIFICATION (ICST 2019), 2019, : 481 - 482
  • [44] A NEW APPROACH TO THE DESIGN OF SAFETY-CRITICAL SYSTEMS BASED ON VIRTUAL PROTOTYPING, ASSERTIONS AND SIMULATION
    Oodes, Tim
    Mueller-Schloer, Christian
    [J]. PROCEEDINGS OF THE 1ST INTERNATIONAL CONFERENCE ON ADVANCED RESEARCH IN VIRTUAL AND RAPID PROTOTYPING, 2003, : 284 - 291
  • [45] Safety Analysis and Safety-critical Control of Nonlinear Systems: Barrier Function Approach
    Chen, Jie
    Lyu, Zi-Liang
    Huang, Xin-Yuan
    Hong, Yi-Guang
    [J]. Zidonghua Xuebao/Acta Automatica Sinica, 2023, 49 (03): : 567 - 579
  • [46] Toward a Systematic and Safety Evidence Productive Verification Approach for Safety-Critical Systems
    Gannous, Aiman
    Andrews, Anneliese
    Gallina, Barbara
    [J]. 2018 29TH IEEE INTERNATIONAL SYMPOSIUM ON SOFTWARE RELIABILITY ENGINEERING WORKSHOPS (ISSREW), 2018, : 329 - 336
  • [47] SAFETY ASSESSMENT FOR SAFETY-CRITICAL SYSTEMS USING MARKOV CHAIN MODULAR APPROACH
    Yu, Yangyang
    Johnson, Barry W.
    [J]. INTERNATIONAL JOURNAL OF RELIABILITY QUALITY & SAFETY ENGINEERING, 2011, 18 (02): : 139 - 157
  • [48] A Framework for Software Safety in Safety-Critical Systems
    Medikonda, Ben Swarup
    Panchumarthy, Seetha Ramaiah
    [J]. NEW TRENDS IN SOFTWARE METHODOLOGIES, TOOLS AND TECHNIQUES, 2008, 182 : 361 - 374
  • [49] RFI Monitoring in Support of Safety-Critical Multi-Band GNSS-based Systems
    Morrison, Aiden
    Sokolova, Nadezda
    Ahmed, Naveed
    [J]. 2019 EUROPEAN NAVIGATION CONFERENCE (ENC), 2019,
  • [50] Safety-critical and security-critical computing in Britain: An exploration
    MacKenzie, D
    Tierney, M
    [J]. TECHNOLOGY ANALYSIS & STRATEGIC MANAGEMENT, 1996, 8 (04) : 355 - 379