主办:陕西省汽车工程学会
ISSN 1671-7988  CN 61-1394/TH
创刊:1976年

汽车实用技术 ›› 2021, Vol. 46 ›› Issue (16): 26-29.DOI: 10.16638/j.cnki.1671-7988.2021.016.009

• 智能网联汽车 • 上一篇    下一篇

基于混合分析的汽车信息安全风险分级方法

赵 浩,刘平一,刘天宇   

  1. 中汽数据(天津)有限公司
  • 出版日期:2021-08-30 发布日期:2021-08-30
  • 通讯作者: 赵 浩
  • 作者简介:赵浩,就职于中汽数据(天津)有限公司,从事智能网 联汽车网络安全风险评估与威胁分析技术研究。
  • 基金资助:
    中汽中心指南类课题(20223405)资助

Risk Classification Method of Automotive Cyber Security Based on Hybrid Analysis

YUE Lijiao, SHI Li, LIU Fayong   

  1. China Automotive Data (Tianjin) Co., Ltd.
  • Online:2021-08-30 Published:2021-08-30
  • Contact: ZHAO Hao

摘要: 随着智能网联汽车网络技术的飞速发展,对车辆的信息安全风险分级将为智能网联汽车的网络安全管理提供良好的参考依据。文章介绍了在风险评估过程中对汽车零部件进行信息安全风险分级的方法,利用定性与定量的 混合分析方法,对汽车信息安全相关项进行识别并提取关键特征信息,同时利用基于攻击潜力的定量评估法对其进行估值计算得出风险等级。此外,利用车载信息终端 T-Box 作为示例验证该方法的有效性。

关键词: 风险分级;风险评估;信息安全;T-BOX

Abstract: With the rapid development of the network technology of intelligent connected vehicles, the classification of vehicle cyber security risk will provide a good reference for the cyber security management of intelligent connected vehicles. This paper were introduced for auto parts in the process of risk assessment for cyber security risk classification method, using the mixture of qualitative and quantitative analysis method of cyber security related items on vehicles information to identify and extract the key features, at the same time, based on the quantitative assessment of the potential attack method to estimate the risk level is calculated. In addition, the validity of the proposed method is verified by using the T-box as an example.

Key words: Risk classification; Risk assessment; Information security; T-BOX