基于智能网联汽车的CAN总线攻击与防御检测技术研究
[Abstract]:With the development of the information industry of the Internet of Things and the breakthrough of various key technologies, the intelligent network vehicle based on multi-network convergence has begun to enter people's lives. Vehicles and people, vehicles and vehicles, vehicles and mobile devices, vehicles and infrastructure are interconnected through cloud services and large data exchange. At present, with more and more electronic control devices applied to automobiles, each electronic device module needs to cooperate with each other in the running process of automobiles, and the communication between electronic device modules is structured into a complex communication network. With the increase of the number of sub-devices, the types and numbers of software running on automobiles are increasing, and the problem of network information security follows. Attackers can attack the vulnerabilities of on-board software through communication channels inside and outside automobiles and send abnormal messages to CAN bus, thus affecting the control system of automobiles. Money is so simple, but it really threatens our lives. It is of great significance to protect the safety of CAN bus information by anomaly detection, security protection and other technologies. This paper analyzes and dissects the security vulnerabilities of vehicle-borne CAN bus, designs an attack method against vehicle-borne CAN bus, and expounds how to reverse-crack bus message information in order to achieve the purpose of controlling vehicle. After analyzing the attack means and bus message structure, an anomaly detection module for vehicle-borne CAN bus is proposed. The main achievements are as follows: 1) Based on the research and analysis of vehicle CAN network communication protocol, an effective attack method is designed by using the security vulnerabilities of CAN network. The CAN packet is analyzed by using the reverse technology, and the instructions of vehicle message are cracked to control the vehicle. The vehicle CAN network is different from the traditional calculation. According to the characteristics of CAN packet structure, this paper proposes an anomaly detection model framework, which detects anomaly from message ID and message data bits respectively. It can detect attacks on vehicle-borne CAN network comprehensively. 2) Aiming at CAN An anomaly detection system based on feature and information entropy is proposed. By detecting the probability distribution of different message IDs in CAN bus, the information entropy of vehicle CAN bus is calculated, and the information entropy of normal CAN bus is taken as the threshold of anomaly detection. The simulation results show that the anomaly detection strategy based on the combination of information entropy and feature can effectively detect flooding attacks, massive replay attacks and a few high priority message attacks.3) Aiming at the data bits of CAN messages on vehicle bus, an anomaly detection system based on support vector machine is proposed. The simulation results show that the anomaly detection system based on support vector machine has a good detection effect on the tamper attack of bus message data. As a new research field, this paper proposes a new method to detect the tamper attack of bus message data. This paper makes some preliminary explorations in the aspects of CAN bus vulnerability mining, intrusion attack, anomaly detection, security protection and so on. The results provide an important reference for further research and application of vehicle-borne CAN bus security protection.
【学位授予单位】:天津理工大学
【学位级别】:硕士
【学位授予年份】:2017
【分类号】:U463.6;TP391.44;TN915.08
【相似文献】
相关期刊论文 前10条
1 雒智奇;;地铁列车总线通信控制网络探讨[J];科技与企业;2012年10期
2 ;总线与总线结构[J];电子科技文摘;2006年07期
3 陈佳桂;曾岳南;罗彬;;基于TMS320F2812 DSP的CAN总线通信系统设计[J];工业控制计算机;2007年05期
4 徐红举;;总线通信错误引发的故障[J];汽车维修与保养;2008年02期
5 王津津;张培仁;崔军辉;杨一敏;许波;;基于CAN总线通信系统实验的设计[J];自动化与仪表;2008年05期
6 马纳吉;;实施CAN总线通信提高煤矿安全生产[J];煤炭技术;2010年05期
7 赵瑞;杨维翰;仲兆准;;直流充电站系统CAN总线通信协议的制定与实现[J];电工电气;2012年11期
8 张雪松;胡天友;刘倩;王海;;CAN总线通信在组合式三相光伏逆变器中的应用[J];实验室研究与探索;2013年06期
9 张华良;;CAN总线通信系统设计应用[J];福建电脑;2013年06期
10 龙卫红;;总线通信系统的开发支持工具[J];工业控制计算机;1991年05期
相关会议论文 前10条
1 张雪林;孔峰;;基于TMS320F2812的CAN总线通信研究[A];中南六省(区)自动化学会第24届学术年会会议论文集[C];2006年
2 徐芳萍;;基于C8051F040的CAN总线通信系统[A];河南省通信学会2005年学术年会论文集[C];2005年
3 金浩;韩江洪;史久根;;基于LPC2119的CAN总线通信系统研究[A];2005年“数字安徽”博士科技论坛论文集[C];2005年
4 廖磊;余立建;;竞争式总线通信的实现[A];四川省通信学会2000年学术年会论文集[C];2000年
5 龚静康;麻晓永;;1553B总线模块设计与实现[A];中国声学学会水声学分会2011年全国水声学学术会议论文集[C];2011年
6 李治中;张s,
本文编号:2234861
本文链接:https://www.wllwen.com/kejilunwen/ruanjiangongchenglunwen/2234861.html