On the road with third-party apps - Security, safety and privacy aspects of in-vehicle apps

dc.contributor.authorEriksson, Benjamin
dc.contributor.authorGROTH, JONAS
dc.contributor.departmentChalmers tekniska högskola / Institutionen för data- och informationsteknik (Chalmers)sv
dc.contributor.departmentChalmers University of Technology / Department of Computer Science and Engineering (Chalmers)en
dc.date.accessioned2019-07-03T14:52:47Z
dc.date.available2019-07-03T14:52:47Z
dc.date.issued2018
dc.description.abstractIn recent years the automotive industry has started to digitise their vehicles. Traditionally cars have been equipped with radio, cassette or CD-players and more recently so-called infotainment systems. The abilities of these infotainment systems have developed over the years from only offering radio and navigation to now being a powerful Internet connected device comparable to tablets and smartphones. Recently several car manufacturers have announced the upcoming possibility to install third-party apps into these infotainment systems. With the prospect of downloading third-party code into a device that is integrated into a safety critical system, such as a vehicle with multiple environment sensors, there is a concern for both safety and user privacy. In this thesis, the safety, security and privacy aspects of in-vehicle apps are investigated. The thesis focuses on apps for the Android Automotive operating system which some car manufacturers, including Volvo Car Corporation (VCC), have opted to use in their infotainment systems. It is concluded that in-vehicle Android apps are fundamentally as secure as regular phone apps, the main differences stem from the fact that in-vehicle apps can affect road safety. The traditional Android API poses several risks to road safety while the Automotive version is more restricted it is still insufficient to not be a cause for concern. Furthermore, the added APIs in Automotive constitutes an elevated risk for user privacy. It is shown that the impact of these privacy risks can be mitigated to some extent by vetting apps with state-of-the-art static analysis tools. Finally, recommendations for security measures and vetting processes for secure in-vehicle app stores are presented.
dc.identifier.urihttps://hdl.handle.net/20.500.12380/255949
dc.language.isoeng
dc.setspec.uppsokTechnology
dc.subjectData- och informationsvetenskap
dc.subjectComputer and Information Science
dc.titleOn the road with third-party apps - Security, safety and privacy aspects of in-vehicle apps
dc.type.degreeExamensarbete för masterexamensv
dc.type.degreeMaster Thesisen
dc.type.uppsokH
local.programmeComputer systems and networks (MPCSN), MSc
Ladda ner
Original bundle
Visar 1 - 1 av 1
Hämtar...
Bild (thumbnail)
Namn:
255949.pdf
Storlek:
838.22 KB
Format:
Adobe Portable Document Format
Beskrivning:
Fulltext