Security Shortcomings and Countermeasures for the SAE J1939 Commercial Vehicle Bus Protocol

被引:34
|
作者
Murvay, Pal-Stefan [1 ]
Groza, Bogdan [1 ]
机构
[1] Politehn Univ Timisoara, Dept Automat & Appl Informat, Timisoara 300006, Romania
关键词
J1939; commercial vehicles; security; authentication;
D O I
10.1109/TVT.2018.2795384
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
In the recent years, countless security concerns related to automotive systems were revealed either by academic research or real life attacks. While current attention was largely focused on passenger cars, due to their ubiquity, the reported bus-related vulnerabilities are applicable to all industry sectors where the same bus technology is deployed, i.e., the CAN bus. The SAE J1939 specification extends and standardizes the use of CAN to commercial vehicles where security plays an even higher role. In contrast to empirical results that attest such vulnerabilities in commercial vehicles by practical experiments, here, we determine that existing shortcomings in the SAE J1939 specifications open road to several new attacks, e.g., impersonation, denial of service (DoS), distributed DoS, etc. Taking the advantage of an industry-standard CANoe based simulation, we demonstrate attacks with potential safety critical effects that are mounted while still conforming to the SAE J1939 standard specification. We discuss countermeasures and security enhancements by including message authentication mechanisms. Finally, we evaluate and discuss the impact of employing these mechanisms on the overall network communication.
引用
收藏
页码:4325 / 4339
页数:15
相关论文
共 50 条
  • [31] Open Architecture Automotive Electronic Control System Based on Quantum Frame and SAE J1939
    Li, Hongbin
    Yu, Jingnuo
    FRONTIERS OF MANUFACTURING AND DESIGN SCIENCE, PTS 1-4, 2011, 44-47 : 1967 - 1971
  • [32] SAE J1939协议在车身控制系统中的应用
    王斌
    汽车实用技术, 2010, (02) : 52 - 54
  • [33] SAE J1939协议在重型车OBD中的应用
    钟祥麟
    李孟良
    王务林
    汽车电器, 2009, (07) : 1 - 3+7
  • [34] Control actuation of fully automated heavy-duty vehicles using SAE J1939
    Dickey, SR
    Lu, XY
    IEEE IV2003: INTELLIGENT VEHICLES SYMPOSIUM, PROCEEDINGS, 2003, : 400 - 405
  • [35] 基于SAE J1939协议的车辆信息采集与诊断模块
    陈一新
    李武屹
    莫家贵
    电子技术, 2010, 47 (07) : 65 - 66+51
  • [36] 基于SAE J1939的整车CAN网络数据侦听器
    何红芬
    肖兵
    自动化与仪表, 2016, 31 (03) : 36 - 40
  • [37] Research and Application of J1939 Protocol in Engine Parameter Monitoring System
    Wang, Qing
    Zhou, LiLi
    PROCEEDINGS OF 2020 IEEE 5TH INFORMATION TECHNOLOGY AND MECHATRONICS ENGINEERING CONFERENCE (ITOEC 2020), 2020, : 1532 - 1535
  • [38] 基于SAE J1939协议的双缓冲区网关设计
    程安宇
    何川
    冯辉宗
    代宏达
    计算机应用, 2010, 30(S1) (S1) : 15 - 17+20
  • [39] 基于SAE J1939的车辆监测与故障诊断车载系统
    张继辉
    许勇
    计算机系统应用, 2013, 22 (03) : 73 - 77
  • [40] 车辆控制系统总线通信和控制协议SAE J1939
    程军
    苟凯英
    世界汽车, 2000, (02) : 19 - 21