Symbiotic Analysis of Security Assessment and Penetration Tests Guiding Real L4 Automated City Shuttles

Author:

Benyahya Meriem1ORCID,Bergerat Pierre1ORCID,Collen Anastasija1ORCID,Nijdam Niels Alexander1ORCID

Affiliation:

1. Centre Universitaire d’Informatique, Geneva School of Economics and Management, University of Geneva, Route de Drize 7, CH-1227 Carouge, Switzerland

Abstract

The Connected Automated Vehicle (CAV)’s deployment is proof of the wide evolution of autonomous driving technologies enabling vehicles to gradually dispose of their drivers. Within the scope of smart cities, such innovation has given rise to a new type of CAV: the Automated City Shuttle (ACS). Foreseen as the new paradigm aiming to shape the public transport model, the ACS elicits a plurality of new applications, such as the on-demand service in which a driverless shuttle offers the desired ride without human intervention. However, such a model raises cybersecurity concerns through the numerous attack surfaces and vehicle hyperconnection. This phenomenon was highlighted in several studies on CAVs, but very few research works tackled the specific case of ACSs, whose challenges and risks far exceed those of personal vehicles. The present work offers a comprehensive investigation of cybersecurity attacks, demonstrates a performed risk assessment based on the ISO/SAE 21434 standard, and showcases a penetration test over a real ACS of automation level four (L4) according to the Society of Automotive Engineering (SAE)’s ranking. Based on our experiments, we leverage fundamental cybersecurity recommendations with a focus on the ACS’s physical security.

Funder

European Union’s Horizon 2020 Research and Innovation Programme

Swiss State Secretariat for Education, Research and Innovation (SERI) co-funded by the European Union

Publisher

MDPI AG

Subject

General Medicine,General Chemistry

Reference59 articles.

1. Are Connected and Automated Vehicles the Silver Bullet for Future Transportation Challenges? Benefits and Weaknesses on Safety, Consumption, and Traffic Congestion;Gruyer;Front. Sustain. Cities,2021

2. Deichmann, J., Ebel, E., Heineke, K., Heuss, R., Kellner, M., and Steiner, F. (2023). Autonomous Driving’s Future: Convenient and Connected, McKinsey. Technical Report.

3. Simpson, C., Ataii, E., Kemp, E., and Zhang, Y. (2019). Mobility 2030: Transforming the Mobility Landscape, KPMG International. Technical Report.

4. Litman, T. (2013). Autonomous Vehicle Implementation Predictions, Victoria Transport Policy Institute. Technical Report.

5. SAE (2018). J3016B Taxonomy and Definitions for Terms Related to Driving Automation Systems for On-Road Motor Vehicles, SAE International. Technical Report.

Cited by 3 articles. 订阅此论文施引文献 订阅此论文施引文献,注册后可以免费订阅5篇论文的施引文献,订阅后可以查看论文全部施引文献

1. Analyses on standards and regulations for connected and automated vehicles: Identifying the certifications roadmap;Transportation Engineering;2023-12

2. Lessons Learned for Practical penetration test against Industrial Control Systems;2023 IEEE International Conference on Computing (ICOCO);2023-10-09

3. A Systematic Review of Threat Analysis and Risk Assessment Methodologies for Connected and Automated Vehicles;Proceedings of the 18th International Conference on Availability, Reliability and Security;2023-08-29

同舟云学术

1.学者识别学者识别

2.学术分析学术分析

3.人才评估人才评估

"同舟云学术"是以全球学者为主线,采集、加工和组织学术论文而形成的新型学术文献查询和分析系统,可以对全球学者进行文献检索和人才价值评估。用户可以通过关注某些学科领域的顶尖人物而持续追踪该领域的学科进展和研究前沿。经过近期的数据扩容,当前同舟云学术共收录了国内外主流学术期刊6万余种,收集的期刊论文及会议论文总量共计约1.5亿篇,并以每天添加12000余篇中外论文的速度递增。我们也可以为用户提供个性化、定制化的学者数据。欢迎来电咨询!咨询电话:010-8811{复制后删除}0370

www.globalauthorid.com

TOP

Copyright © 2019-2024 北京同舟云网络信息技术有限公司
京公网安备11010802033243号  京ICP备18003416号-3