Respond to security threats with strong security solutions
Strengthening the ability to respond to hacking on vehicles
Vehicle Security
 
 
 
 

As the mobility paradigm changes, vehicle security threat factors are increasing, and the importance of vehicle convergence security technology is gradually increasing.

Hyundai AutoEver supports complete vehicle security and provides a modularized vehicle security solution by utilizing self-developed operating software, converged cutting-edge technology.

In addition, Hyundai AutoEver develops unique security solutions and support tools for each vehicle hacking threat factor, analyses various vulnerabilities to strengthen vehicle hacking response capabilities, and provides consulting services to respond to hacking through mock hacking.

Vehicle Security Solutions

With the advancement of vehicles such as vehicle diagnostic communication, controllers, high-performance controllers, digital keys, and in-vehicle connectivity controllers, threat factors of vehicle hacking are also diversifying.
Hyundai AutoEver provides a security solution for all elements that can be target of in-vehicle hacking and provides consulting services to strengthen security throughout the entire vehicle development process, ensuring the safety of future smart cars and responding agilely to security threats.

Vehicle security solution modularization supply and supporting tool

Hyundai AutoEver has developed security solutions and supporting tools by each threat factor of vehicle hacking
and responded to unauthorized access and illegal updating of controller software through diagnostic communication.

Responding to unauthorized access through diagnostic communication by developing security solutions and support tools for each vehicle hacking threat Responding to unauthorized access through diagnostic communication by developing security solutions and support tools for each vehicle hacking threat
Responding to illegal controller software updates by developing security solutions and support tools for each vehicle hacking threat Responding to illegal controller software updates by developing security solutions and support tools for each vehicle hacking threat

Vehicle security encryption library

As vehicle security solution for controller including in-vehicle gateways is expanding, the installation of an encryption library is essential.
Hyundai AutoEver is developing and distributing a library of vehicle controllers for major encryption algorithms.

Self-developing and distributing library for vehicle controller of major cryptographic algorithms of vehicle Self-developing and distributing library for vehicle controller of major cryptographic algorithms of vehicle
 

Development of 5 major encryption algorithms (AES/TDES/SHA/RSA/ECC)

Optimization, considering vehicle platform characteristics (Use 20% memory compared to PC)

Considering mass production of vehicles, testing 4 major MCU types (Infineon, NXP, Renesas)

Support encryption module validation test automation tool (NIST standard test and performance analysis)

HSM operating software

Hyundai AutoEver provides HSM (Hardware Security Module) operation software, a security-only MCU for defensing from vehicle controller hacking. Through the SW, the safety of mass production of software is verified by solving problems such as the possibility of controller firmware leakage, possible performance delay, and lack of encryption key and data storage space.

Provide protection of the controller’s bootloader, firmware and security key management function

Provide hardware-based encryption algorithms and provides key data protection functions

Removed debugger function and optimised system security through One Time Programmable (OTP)

Provide detailed manual and test code for controller integration

Security solutions for high-performance controllers

As requirements of in-vehicle electric devices are expanding, the number of high-performance controllers increases, and the need to apply security technology increases. Hyundai AutoEver applies secure boot, secure debug, and trusted environment-based security technologies to high-performance controllers.

Develop Trusted Execution Environment (TEE) based security applications (Secure Access, Secure Flash, Secure Storage, etc.)

Apply Rich Operating System Execution Environment (REE) based Linux security technology (Verified Boot, Full Disk Encryption, Firewall, etc.)

Monitoring a series of activities of the in-vehicle controller/network, detecting an attacker’s intrusion, and providing a notification to the security control centre Monitoring a series of activities of the in-vehicle controller/network, detecting an attacker’s intrusion, and providing a notification to the security control centre

CAN Intrusion Detection System (IDS)
Security threats are increasing as the functions of the in-vehicle connectivity controller (CCU) expand. Hyundai AutoEver’s CAN IDS (Intrusion Detection System) monitors a series of activities of the in-vehicle controller/network, detects an attacker’s intrusion, and provides a notification to the security control center.
Apply the optimised detection algorithm through customising the ruleset for each vehicle type
Complete in-house development of major intrusion detection algorithms and performance evaluation through external organizations (SwRI)
White box encryption technology
White Box Cryptography (WBC)

The most complete
security created by
the combination of
an algorithm and
an encryption key

Hyundai AutoEver’s WBC is a core technology for software content copyright protection, and is a solution that applies a new algorithm technique that supplements the vulnerability of the existing encryption algorithm.
It is a combination of encryption algorithm and encryption key, unlike existing encryption modules that generate a key value or input a fixed key whenever data is entered, reverse analysis is impossible, so passwords cannot be stolen.
In addition, WBC technology is not dependent on hardware and can be applied to various platforms, does not require a separate storage, and guarantees high speed and high security strength.

Elimination of the risk of encryption key theft

Destroy the cryptographic calculation pattern to make it impossible to steal the reversely analyzed cryptographic key

Strengthen security by obfuscation of the encryption operation by device, prevention of illegal copying, and destruction of encryption operation pattern

Ensuring versatility and compatibility

As it is software-based technology, separate storage is unnecessary and expandable to various platforms

It can be universally utilized in field where has compatibility with general cryptographic libraries and passwords are used

Integrated authentication platform
MPASS

Hyundai AutoEver’s MPASS is an integrated authentication platform that can issue and manage various authentication modules such as OTP, FIDO, and digital employee ID cards.
By integrating the existing systems that were individually operated into one management system and linking the issuance and authentication services, the authentication module can be selectively used.
Users can download authentication apps from self-service at once, and administrators can check the issuance and authentication status of each module with one server.

Biometric authentication-based security authentication system
MPASS FIDO

MPASS FIDO is an integrated platform that provides authentication methods using various biometric authentication devices to supplement existing password limitations such as security threats and reduced convenience. By providing biometric authentication such as fingerprint and facial recognition, as well as various authentication devices such as pin code, pattern, and OTP in one platform, user convenience can be maximised.

With a proven product certified to FIDO2 as well as FIDO1.0 technology, it can be linked to various devices such as Android, iOS, and Windows client SDK, and supports FIDO 1.0 and 2 protocols simultaneously in the cloud. Hyundai AutoEver is building a safer and more reliable IoT authentication system through FIDO technology with both user convenience and excellent security.