Security Shortcomings and Countermeasures for the SAE J1939 Commercial Vehicle Bus Protocol

被引:34
|
作者
Murvay, Pal-Stefan [1 ]
Groza, Bogdan [1 ]
机构
[1] Politehn Univ Timisoara, Dept Automat & Appl Informat, Timisoara 300006, Romania
关键词
J1939; commercial vehicles; security; authentication;
D O I
10.1109/TVT.2018.2795384
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
In the recent years, countless security concerns related to automotive systems were revealed either by academic research or real life attacks. While current attention was largely focused on passenger cars, due to their ubiquity, the reported bus-related vulnerabilities are applicable to all industry sectors where the same bus technology is deployed, i.e., the CAN bus. The SAE J1939 specification extends and standardizes the use of CAN to commercial vehicles where security plays an even higher role. In contrast to empirical results that attest such vulnerabilities in commercial vehicles by practical experiments, here, we determine that existing shortcomings in the SAE J1939 specifications open road to several new attacks, e.g., impersonation, denial of service (DoS), distributed DoS, etc. Taking the advantage of an industry-standard CANoe based simulation, we demonstrate attacks with potential safety critical effects that are mounted while still conforming to the SAE J1939 standard specification. We discuss countermeasures and security enhancements by including message authentication mechanisms. Finally, we evaluate and discuss the impact of employing these mechanisms on the overall network communication.
引用
收藏
页码:4325 / 4339
页数:15
相关论文
共 50 条
  • [21] 基于SAE J1939协议的车辆下线检测系统设计
    陆世鹏
    许勇
    陈伟波
    汽车技术, 2013, (02) : 41 - 45
  • [22] SAE J1939协议在混合动力客车中的应用
    赵佳
    汽车实用技术, 2011, (01) : 22 - 25
  • [23] 基于μC/OS-Ⅱ的SAE J1939协议通信技术
    林文辉
    许彬彬
    传感器世界, 2015, 21 (03) : 26 - 31
  • [24] 基于SAE J1939协议的客车ECU参数测试系统
    谢东坡
    张仪栋
    周亮
    颜永福
    徐建勋
    汽车技术, 2010, (12) : 45 - 47
  • [25] Design and Implementation of Data Collection and Driving Behaviour Analysis Based on SAE J1939
    Prasad, B. V. P.
    Tang, Jing-Jou
    Luo, Sheng-Jhu
    2019 INTERNATIONAL SYMPOSIUM ON INTELLIGENT SIGNAL PROCESSING AND COMMUNICATION SYSTEMS (ISPACS), 2019,
  • [26] SAE J1939协议的研究及其协议栈的实现
    张涛
    李珍珍
    王思山
    黄爱蓉
    湖北汽车工业学院学报, 2011, 25 (01) : 25 - 29
  • [27] 基于SAE J1939协议的车辆网络集成方法
    谢俊红
    林轶
    陈三鉴
    黄土琛
    单片机与嵌入式系统应用, 2009, (05) : 8 - 10
  • [28] 基于SAE J1939的汽车网络测试系统设计
    王明文
    西华大学学报(自然科学版), 2011, 30 (01) : 48 - 51
  • [29] Real-Time Network Defense of SAE J1939 Address Claim Attacks
    Campo, Matthew Timothy
    Mukherjee, Subhojeet
    Daily, Jeremy
    SAE INTERNATIONAL JOURNAL OF COMMERCIAL VEHICLES, 2021, 14 (03) : 319 - 328
  • [30] SAE J1939标准下的汽车CAN通讯报文/帧格式
    刘永木
    刘望生
    李洪泽
    长春工业大学学报(自然科学版), 2003, (01) : 53 - 55