automotive cyber-physical security testbeds and applications...2018/11/13  · automotive...

13
Automotive Cyber-Physical Security Testbeds and Applications 1 Tsutomu Matsumoto [email protected] SIP-adus Workshop 2018, Tokyo, Nov. 13, 2018 The Session on Cyber Security (C) Tsutomu Matsumoto Faculty of Environment and Information Sciences and Institute of Advanced Sciences

Upload: others

Post on 01-Aug-2021

2 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: Automotive Cyber-Physical Security Testbeds and Applications...2018/11/13  · Automotive Cyber-Physical Security Testbeds and Applications 1 Tsutomu Matsumoto tsutomu@ynu.ac.jp SIP-adus

Automotive Cyber-Physical Security Testbeds and

Applications

1

Tsutomu [email protected]

SIP-adus Workshop 2018, Tokyo, Nov. 13, 2018

The Session on Cyber Security

(C) Tsutomu Matsumoto

Faculty of Environment and Information Sciences and

Institute of Advanced Sciences

Page 2: Automotive Cyber-Physical Security Testbeds and Applications...2018/11/13  · Automotive Cyber-Physical Security Testbeds and Applications 1 Tsutomu Matsumoto tsutomu@ynu.ac.jp SIP-adus

(C) Tsutomu Matsumoto 2

Acquiring

Processing

Controlling

Environmental

Communicated

In Vehicle

Instrumentation Security

Control Security

Communi-cationSecurity

Storage Security

ProcessingSecurity

AI Security

Major Automotive Cyber Physical Security Issues

Page 3: Automotive Cyber-Physical Security Testbeds and Applications...2018/11/13  · Automotive Cyber-Physical Security Testbeds and Applications 1 Tsutomu Matsumoto tsutomu@ynu.ac.jp SIP-adus

(C) Tsutomu Matsumoto 3

In-Vehicle Network

Message Authentication Codes/ Digital Signatures

Cryptographic Key Management Anomaly Detection Security Supply Chain Management

Page 4: Automotive Cyber-Physical Security Testbeds and Applications...2018/11/13  · Automotive Cyber-Physical Security Testbeds and Applications 1 Tsutomu Matsumoto tsutomu@ynu.ac.jp SIP-adus

(C) Tsutomu Matsumoto 4

Connected Architecture Message Authentication Codes/

Digital Signatures Cryptographic Key Management Trust Management

Page 5: Automotive Cyber-Physical Security Testbeds and Applications...2018/11/13  · Automotive Cyber-Physical Security Testbeds and Applications 1 Tsutomu Matsumoto tsutomu@ynu.ac.jp SIP-adus

Medium forInstrumentation Environment

ESensor

(Sensing System)

S

Object

O

ZOutput

x to be sensed

(eg. Distance to O)

Attack

AAttack

A

Attack

A

Attack

A

(C) Tsutomu Matsumoto 5

Attack to1. Integrity2.Availability3.Confidentiality

Threats to Instrumentation

Page 6: Automotive Cyber-Physical Security Testbeds and Applications...2018/11/13  · Automotive Cyber-Physical Security Testbeds and Applications 1 Tsutomu Matsumoto tsutomu@ynu.ac.jp SIP-adus

(C) Tsutomu Matsumoto 6

Automatic Driving

Control Mechanisms Algorithms Data

Page 7: Automotive Cyber-Physical Security Testbeds and Applications...2018/11/13  · Automotive Cyber-Physical Security Testbeds and Applications 1 Tsutomu Matsumoto tsutomu@ynu.ac.jp SIP-adus

(C) Tsutomu Matsumoto 7

Acquiring

Processing

Controlling

Environmental

Communicated

InVehicle

Instrumentation Security

Control Security

Communi-cationSecurity

Storage Security

ProcessingSecurity

AI Security

Major Automotive Cyber Physical Security Issues

Page 8: Automotive Cyber-Physical Security Testbeds and Applications...2018/11/13  · Automotive Cyber-Physical Security Testbeds and Applications 1 Tsutomu Matsumoto tsutomu@ynu.ac.jp SIP-adus

Needs for Developing

1. Evaluation Technologies

2. Security Enhancement Technologies

3. Security Assurance Schemes

• Certification

• Self Declaration

Superior Automotive Security Testbeds for

Responsible Examination and Development of Offence and Defense Technologies

Self Declaration

Certification

(C) Tsutomu Matsumoto 8

Automotive Cyber Physical Security

Page 9: Automotive Cyber-Physical Security Testbeds and Applications...2018/11/13  · Automotive Cyber-Physical Security Testbeds and Applications 1 Tsutomu Matsumoto tsutomu@ynu.ac.jp SIP-adus

9(C) Tsutomu Matsumoto

Software vehicle simulator

CAN

PASTA(testbed)

CAN

Physical inputs

● Acceleration● Friction● Weight

white-box ECUs

Scale model of vehicle

PASTA in attaché case

Portable Automotive

Security Testbed with

Adaptability

PASTAA Joint Research by

and

Details: Black Hat Europe 2018

Page 10: Automotive Cyber-Physical Security Testbeds and Applications...2018/11/13  · Automotive Cyber-Physical Security Testbeds and Applications 1 Tsutomu Matsumoto tsutomu@ynu.ac.jp SIP-adus

10(C) Tsutomu MatsumotoStructure of a Version of PASTA

Panels on upper side of PASTA displaying vehicle status

White-box ECUs

PASTAA Joint Research by

and

Details: Black Hat Europe 2018

Accelerating Security Research by Rich Adaptability and Portability

Providing Standard Development Platform

Visualization of CAN Communication Results

Educational Use Applied to Class

“Security Analysis” at YNU

Page 11: Automotive Cyber-Physical Security Testbeds and Applications...2018/11/13  · Automotive Cyber-Physical Security Testbeds and Applications 1 Tsutomu Matsumoto tsutomu@ynu.ac.jp SIP-adus

11Figures and Pictures by Courtesy of JARI

Pseud In-Vehicle Network

Steering-ECU

OBD

CAN-Router

Brake-ECU

PowerTrain-ECU

CAN-FDCAN-FD

HMI-ECU

HILS

カメラレーダ

V2X

GNSS

ADAS(Fusion) Model

CAN-FDCAN-FD

Dummy Server

・Appli SW(OTA)(TCU, Gateway, ECU)

・Parameter Data(White list,etc)

・Map Data

HSM

CAN CAN CANCAN

C-Gateway

USB

Ether-CAN Converter

I V I

HILSSensor Generic Model

Ether

(WiFi)

(USB)

Ether

LAN Analyzer

Automotive Simulation Models(ASM)

FusionPass

Planning

TCU

HSM

Application

Processor

Modem(LTE,WiFi)

LoggingBehavior Monitoring

SD(log)

(FPGA)

Switch

White ListFilter

DDR(work)

(FPGA)

Ether

HSM

Ether

CAN

AOBA Security Testbed Being Developed by METI/JARI Project

Other Examples

2018/6/8dSPACE User Conference

2018/7/20CDNLive Japan 2018

Page 12: Automotive Cyber-Physical Security Testbeds and Applications...2018/11/13  · Automotive Cyber-Physical Security Testbeds and Applications 1 Tsutomu Matsumoto tsutomu@ynu.ac.jp SIP-adus

Needs for Developing

1. Evaluation Technologies

2. Security Enhancement Technologies

3. Security Assurance Schemes

• Certification

• Self Declaration

Superior Automotive Security Testbeds for

Responsible Examination and Development of Offence and Defense Technologies

Self Declaration

Certification

(C) Tsutomu Matsumoto 12

Automotive Cyber Physical Security

Page 13: Automotive Cyber-Physical Security Testbeds and Applications...2018/11/13  · Automotive Cyber-Physical Security Testbeds and Applications 1 Tsutomu Matsumoto tsutomu@ynu.ac.jp SIP-adus

13

Thank you! Tsutomu Matsumoto

URL: http://ipsr.ynu.ac.jp/

(C) Tsutomu Matsumoto