NTL Record

Title Cybersecurity Research Considerations for Heavy Vehicles
Record ID 65940
Personal Name
Creator
Stachowski, Stephen; Bielawski, Russ; Weimerskirch, Andre
Corporate Creator University of Michigan. Transportation Research Institute
Corporate
Contributor
United States. Department of Transportation. National Highway Traffic Safety Administration
Publisher United States. Department of Transportation. National Highway Traffic Safety Administration
Publication Date 20181200
Language English
Abstract The intent of this research is to investigate cybersecurity aspects of medium-duty/heavy-duty (MD/HD) trucks (classes 1 to 8) and compare those aspects to passenger vehicles. Information collected had a significant bias to-wards HD vehicles (class 7/8), as opposed to MD vehicles. This was due to the discovery process yielding very limited data on MD vehicles (class 3 to 6). This directly correlates to the types of responses provided by industry experts and their cybersecurity concerns (mainly by heavy truck OEMs and suppliers). Much focus was centered around their higher electronic content products that typically occur on class 7/8 vehicle platforms. Often, stake-holder feedback indicated that MD trucks have similar vulnerabilities to either light-duty or heavy-duty trucks but not necessarily anything particularly unique to that segment. This generality likely originates from the similarities between MD truck architectures/designs and HD truck architectures. The objective is to develop a frame-work to understand common features and differences between passenger vehicle and heavy-duty vehicle cyber-security in terms of lifecycle, threats and risks, electrical/electronic architectures, control applications, security countermeasures, and industry aspects. Considering recent public awareness of passenger vehicle cybersecurity vulnerabilities, NHTSA undertook this research to understand potential impacts in the heavy-truck vehicle do-main. This task started with the investigation of heavy-vehicle cybersecurity practices by contrasting the passenger vehicle cybersecurity knowledge-base to that of heavy vehicles. The project next considered risks in a more generic manner, and identified possible mitigation mechanisms. The comparison framework developed in this document was leveraged to help indemnify the possible mitigation mechanisms. The investigation and data gathering concentrated efforts on issues that affect vehicle safety, but not necessarily asset protection.
Public Note Stachowski, S., Bielawski, R., & Weimerskirch, A. (2018, December). Cybersecurity research considerations for heavy vehicles (Report No. DOT HS 812 636). Washington, DC: National Highway Traffic Safety Administration.
Rosap ID dot:38822
Rosap URL https://rosap.ntl.bts.gov/view/dot/38822
TRT Terms Heavy vehicles; Research; Cybernetics; Computer security; Data protection; Intelligent vehicles; Security; Vehicle safety
General Subjects Cybersecurity
Geographical
Coverage
United States
TRIS Online
Accession No
1699634
Contract Number DTNH22-15-R-00101
Report Number DOT HS 812 636
Resource type Tech Report
URL https://ntlrepository.blob.core.windows.net/lib/65000/65900/65940/DOT-HS-812-636_20190307v2.pdf
Format PDF
Database NTL Digital Repository