The automotive market is increasingly profitable for cyberattacks with the constant shift toward fully interconnected vehicles. Electronic Control Units (ECUs) installed on cars often operate in a critical and hostile environment. Hence, both carmakers and governments have decided to support a series of initiatives to mitigate risks and threats belonging to the automotive domain. The Controller Area Network (CAN) is the primary communication protocol in the automotive field, and the integrity of the communication over this network is assured through Message Authentication Codes (MAC). However, limitations in throughput and frame size limit the application of this technique to specific versions of the CAN protocol, leaving several vehicles still unprotected. This paper presents CAN Multiplexed MAC (CAN-MM), a new approach exploiting frequency modulation to multiplex MAC data with standard CAN communication. CAN-MM allows transmitting MAC payloads maintaining full-back compatibility with all versions of the standard CAN protocol. Moreover, multiplexing allows sending DATA and MAC simultaneously.
翻译:汽车市场在网络攻击方面越来越有利可图,因为不断转向完全互连的车辆。在汽车上安装的电子控制单位(ECU)往往在关键和敌对的环境中运作。因此,汽车制造商和政府都决定支持一系列举措,以减轻属于汽车域的风险和威胁。控制区网络(CAN)是汽车域的主要通信协议,而这一网络的通信完整性通过信息认证代码(MAC)得到保证。然而,吞吐量和框架大小的限制限制了这一技术在CAN协议特定版本中的应用,使一些车辆仍然得不到保护。本文介绍了CAN多路MAC(CAN-MM),这是利用标准CAN通信对多路MAC数据进行频率调控的新方法。CAN-MM允许传输MAC载荷与标准 CAN协议的所有版本保持全背兼容性。此外,多路转换使DATA和MAC能够同时发送DA和MAC。