Change Your Car's Filters: Efficient Concurrent and Multi-Stage Firewall for OBD-II Network Traffic

Felix Klement, H. C. Pöhls, S. Katzenbeisser
{"title":"Change Your Car's Filters: Efficient Concurrent and Multi-Stage Firewall for OBD-II Network Traffic","authors":"Felix Klement, H. C. Pöhls, S. Katzenbeisser","doi":"10.1109/CAMAD55695.2022.9966902","DOIUrl":null,"url":null,"abstract":"Modern cars offer one common interface to the outside, the OBD. Among the multitude of protocols that could exchange messages with the car's internal devices over OBD the CAN-BUS protocol is the most well-known; several commercial devices (so-called dongles) would allow to send and receive messages without any user-controlled restrictions. In order to enable fine-grained filtering on the CAN - BUS we exploit a security weakness called man-in-the-middle: the car or dongle does not apply any origin authentication as neither digital signatures nor message authentication codes (MACs) are used. We are the first to present this approach and offer measurements for our concurrent and multi-stage design that enables a fine-grained and extensible filtering approach for all protocols within the OBD.","PeriodicalId":166029,"journal":{"name":"2022 IEEE 27th International Workshop on Computer Aided Modeling and Design of Communication Links and Networks (CAMAD)","volume":"245 12","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2022-11-02","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"1","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2022 IEEE 27th International Workshop on Computer Aided Modeling and Design of Communication Links and Networks (CAMAD)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/CAMAD55695.2022.9966902","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 1

Abstract

Modern cars offer one common interface to the outside, the OBD. Among the multitude of protocols that could exchange messages with the car's internal devices over OBD the CAN-BUS protocol is the most well-known; several commercial devices (so-called dongles) would allow to send and receive messages without any user-controlled restrictions. In order to enable fine-grained filtering on the CAN - BUS we exploit a security weakness called man-in-the-middle: the car or dongle does not apply any origin authentication as neither digital signatures nor message authentication codes (MACs) are used. We are the first to present this approach and offer measurements for our concurrent and multi-stage design that enables a fine-grained and extensible filtering approach for all protocols within the OBD.
查看原文
分享 分享
微信好友 朋友圈 QQ好友 复制链接
本刊更多论文
改变你的汽车过滤器:OBD-II网络流量的高效并发和多阶段防火墙
现代汽车提供一个与外部的通用接口,OBD。在众多可以通过OBD与汽车内部设备交换消息的协议中,CAN-BUS协议是最著名的;一些商业设备(所谓的加密狗)将允许在没有任何用户控制限制的情况下发送和接收消息。为了在CAN - BUS上启用细粒度过滤,我们利用了一个称为中间人的安全弱点:汽车或加密狗不应用任何原始身份验证,因为既没有使用数字签名,也没有使用消息身份验证码(mac)。我们是第一个提出这种方法的人,并为我们的并发和多阶段设计提供了度量,该设计为OBD中的所有协议提供了细粒度和可扩展的过滤方法。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 去求助
来源期刊
自引率
0.00%
发文量
0
期刊最新文献
Robust Network Intrusion Detection Systems for Outlier Detection Secure Two-Way Communications Between UAVs and Control Center in IoV 5G Communication User Mobility Dataset for 5G Networks Based on GPS Geolocation Risk Estimation for a Secure & Usable User Authentication Mechanism for Mobile Passenger ID Devices Hybrid SIC with Residual Error Factor in Wireless Powered Communications
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
现在去查看 取消
×
提示
确定
0
微信
客服QQ
Book学术公众号 扫码关注我们
反馈
×
意见反馈
请填写您的意见或建议
请填写您的手机或邮箱
已复制链接
已复制链接
快去分享给好友吧!
我知道了
×
扫码分享
扫码分享
Book学术官方微信
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术
文献互助 智能选刊 最新文献 互助须知 联系我们:info@booksci.cn
Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。
Copyright © 2023 Book学术 All rights reserved.
ghs 京公网安备 11010802042870号 京ICP备2023020795号-1