ODR kommer att vara otillgängligt pga systemunderhåll onsdag 25 februari, 13:00 -15:00 (ca). Var vänlig och logga ut i god tid. // ODR will be unavailable due to system maintenance, Wednesday February 25, 13:00 - 15:00. Please log out in due time.
 

Enhancing the Security of Android-Based Infotainment Systems

dc.contributor.authorLindblad, Emil
dc.contributor.authorPapacosta, Amanda
dc.contributor.departmentChalmers tekniska högskola / Institutionen för data och informationstekniksv
dc.contributor.departmentChalmers University of Technology / Department of Computer Science and Engineeringen
dc.contributor.examinerOlovsson, Tomas
dc.contributor.supervisorOlovsson, Tomas
dc.date.accessioned2026-01-15T10:17:24Z
dc.date.issued2025
dc.date.submitted
dc.description.abstractModern infotainment systems are highly integrated with both the vehicle’s Controller Area Network (CAN) bus and external internet services. Such connectivity capabilities make the infotainment system a viable entry point for adversaries targeting the vehicle’s internal components and subsystems. Therefore, this thesis investigates how to implement a granular access control mechanism for the CAN bus, guided by the Principle of Least Privilege (PoLP). The objective is to create a more secure infotainment system that incorporates multiple layers of protection. In addition to adhering to the PoLP, the proposed solution aims to comply with two important cybersecurity standards and regulations: EN 18031-1:2024, part of the Radio Equipment Directive (RED), and ISO/SAE 21434. The latter providing a framework for Threat Modeling, the process of analyzing a system, identifying threats, and deciding on appropriate mitigation. A key component of the access control system is the use of Android permissions, which provide enhanced granularity in managing application access. In addition to Android permissions, the configuration scheme of the infotainment system was extended with application level whitelisting for CAN data. Benchmarking tests were conducted to evaluate the performance impact of the proposed solution, and the results did not show any significant additional overhead. The final implementation provides effective and scalable protection of the CAN bus, with granular access control, improving security in the infotainment system.
dc.identifier.coursecodeDATX05
dc.identifier.urihttp://hdl.handle.net/20.500.12380/310876
dc.language.isoeng
dc.setspec.uppsokTechnology
dc.subjectCybersecurity
dc.subjectAndroid Permissions
dc.subjectAndroid
dc.subjectPrinciple of Least Privilege
dc.subjectCAN Bus
dc.subjectIn-Vehicle Network
dc.titleEnhancing the Security of Android-Based Infotainment Systems
dc.type.degreeExamensarbete för masterexamensv
dc.type.degreeMaster's Thesisen
dc.type.uppsokH
local.programmeComputer systems and networks (MPCSN), MSc

Ladda ner

Original bundle

Visar 1 - 1 av 1
Hämtar...
Bild (thumbnail)
Namn:
CSE 25-106 ADP EL.pdf
Storlek:
2.95 MB
Format:
Adobe Portable Document Format

License bundle

Visar 1 - 1 av 1
Hämtar...
Bild (thumbnail)
Namn:
license.txt
Storlek:
2.35 KB
Format:
Item-specific license agreed upon to submission
Beskrivning: