Verlagslink DOI: | 10.48550/arXiv.2310.10336 | Titel: | A multilayered security infrastructure for connected vehicles : first lessons from the field | Sprache: | Englisch | Autorenschaft: | Häckel, Timo Meyer, Philipp Stahlbock, Lukas Langer, Falk Eckhardt, Sebastian A. Korf, Franz Schmidt, Thomas C. |
Erscheinungsdatum: | 16-Okt-2023 | Verlag: | Arxiv.org | Zeitschrift oder Schriftenreihe: | De.arxiv.org | Zusammenfassung: | Connected vehicles are vulnerable to manipulation and a broad attack surface can be used to intrude in-vehicle networks from anywhere on earth. In this work, we present an integrated security infrastructure comprising network protection, monitoring, incident management, and counteractions, which we built into a prototype based on a production car. Our vehicle implements a Software-Defined Networking Ethernet backbone to restrict communication routes, network anomaly detection to make misbehavior evident, virtual controller functions to enable agile countermeasures, and an automotive cloud defense center to analyse and manage incidents on vehicle fleets. We present first measurements and lessons learned from operating the prototype: many network attacks can be prevented through software-defined access control in the backbone; anomaly detection can reliably detect misbehavior but needs to improve on false positive rate; controller virtualization needs tailored frameworks to meet in-car requirements; and cloud defence enables fleet management and advanced countermeasures. Our findings indicate attack mitigation times in the vehicle from 257 ms to 328 ms and from 2,168 ms to 2,713 ms traversing the cloud. |
URI: | http://hdl.handle.net/20.500.12738/14870 | Begutachtungsstatus: | Nur bei Preprints: Diese Version ist noch nicht begutachtet | Einrichtung: | Department Informatik Fakultät Technik und Informatik |
Dokumenttyp: | Vorabdruck (Preprint) | Hinweise zur Quelle: | Presented at the BROAD workshop at the 2022 IEEE Intelligent Vehicles Symposium (IV) in Aachen, Germany. |
Enthalten in den Sammlungen: | Publications without full text |
Zur Langanzeige
Volltext ergänzen
Feedback zu diesem Datensatz
Export
Alle Ressourcen in diesem Repository sind urheberrechtlich geschützt.