• English
  • Deutsch
  • Log In
    Password Login
    Research Outputs
    Fundings & Projects
    Researchers
    Institutes
    Statistics
Repository logo
Fraunhofer-Gesellschaft
  1. Home
  2. Fraunhofer-Gesellschaft
  3. Scopus
  4. Caiba: Multicast Source Authentication for CAN Through Reactive Bit Flipping
 
  • Details
  • Full
Options
2025
Conference Paper
Title

Caiba: Multicast Source Authentication for CAN Through Reactive Bit Flipping

Abstract
Controller Area Networks (CANs) are the back-bone for reliable intra-vehicular communication. Recent cyberattacks have, however, exposed the weaknesses of CAN, which was designed without any security considerations in the 1980s. Current efforts to retrofit security via intrusion detection or message authentication codes are insufficient to fully secure CAN as they cannot adequately protect against masquerading attacks, where a compromised communication device, a so-called electronic control units, imitates another device. To remedy this situation, multicast source authentication is required to reliably identify the senders of messages. In this paper, we present Caiba, a novel multicast source authentication scheme specifically designed for communication buses like CAN. Caiba relies on an authenticator overwriting authentication tags on-the-fly, such that a receiver only reads a valid tag if not only the integrity of a message but also its source can be verified. To integrate Caiba into CAN, we devise a special message authentication scheme and a reactive bit overwriting mechanism. We achieve interoperability with legacy CAN devices, while protecting receivers implementing the AUTOSAR SecOC standard against masquerading attacks without communication overhead or verification delays.
Author(s)
Wagner, Eric
Fraunhofer-Institut für Kommunikation, Informationsverarbeitung und Ergonomie FKIE  
Basels, Frederik
Fraunhofer-Institut für Kommunikation, Informationsverarbeitung und Ergonomie FKIE  
Bauer, Jan
Fraunhofer-Institut für Kommunikation, Informationsverarbeitung und Ergonomie FKIE  
Zimmermann, Till
Osnabrück University
Wehrle, Klaus
Rheinisch-Westfälische Technische Hochschule Aachen
Henze, Martin  
Fraunhofer-Institut für Kommunikation, Informationsverarbeitung und Ergonomie FKIE  
Mainwork
10th IEEE European Symposium on Security and Privacy, EUROS&P 2025. Proceedings  
Conference
European Symposium on Security and Privacy 2025  
DOI
10.1109/EuroSP63326.2025.00045
Language
English
Fraunhofer-Institut für Kommunikation, Informationsverarbeitung und Ergonomie FKIE  
Keyword(s)
  • AUTOSAR SecOC

  • CAN bus

  • message authentication codes

  • multicast source authentication

  • Cookie settings
  • Imprint
  • Privacy policy
  • Api
  • Contact
© 2024