Cyber-security internals of a Skoda Octavia vRS: a hands on approach
Article
Urquhart, C., Bellekens, X., Tachtatzis, C., Atkinson, R., Hindy, H. and Seeam, A. 2019. Cyber-security internals of a Skoda Octavia vRS: a hands on approach. IEEE Access. 7, pp. 146057-146069. https://doi.org/10.1109/ACCESS.2019.2943837
Type | Article |
---|---|
Title | Cyber-security internals of a Skoda Octavia vRS: a hands on approach |
Authors | Urquhart, C., Bellekens, X., Tachtatzis, C., Atkinson, R., Hindy, H. and Seeam, A. |
Abstract | The convergence of information technology and vehicular technologies are a growing paradigm, allowing information to be sent by and to vehicles. This information can further be processed by the Electronic Control Unit (ECU) and the Controller Area Network (CAN) for in-vehicle communications or through a mobile phone or server for out-vehicle communication. Information sent by or to the vehicle can be life-critical (e.g. breaking, acceleration, cruise control, emergency communication, etc … ). As vehicular technology advances, in-vehicle networks are connected to external networks through 3 and 4G mobile networks, enabling manufacturer and customer monitoring of different aspects of the car. While these services provide valuable information, they also increase the attack surface of the vehicle, and can enable long and short range attacks. In this manuscript, we evaluate the security of the 2017 Skoda Octavia vRS 4x4. Both physical and remote attacks are considered, the key fob rolling code is successfully compromised, privacy attacks are demonstrated through the infotainment system, the Volkswagen Transport Protocol 2.0 is reverse engineered. Additionally, in-car attacks are highlighted and described, providing an overlook of potentially deadly threats by modifying ECU parameters and components enabling digital forensics investigation are identified. |
Middlesex University Theme | Creativity, Culture & Enterprise |
Publisher | Institute of Electrical and Electronics Engineers (IEEE) |
Journal | IEEE Access |
ISSN | 2169-3536 |
Electronic | 2169-3536 |
Publication dates | |
Online | 25 Sep 2019 |
18 Oct 2019 | |
Publication process dates | |
Deposited | 05 Oct 2022 |
Submitted | 14 Aug 2019 |
Accepted | 14 Sep 2019 |
Output status | Published |
Publisher's version | License |
Copyright Statement | This work is licensed under a Creative Commons Attribution 4.0 License. For more information, see http://creativecommons.org/licenses/by/4.0/ |
Digital Object Identifier (DOI) | https://doi.org/10.1109/ACCESS.2019.2943837 |
Language | English |
https://repository.mdx.ac.uk/item/8q023
Download files
Publisher's version
73
total views15
total downloads0
views this month0
downloads this month