Skip to main content
Erschienen in: Journal of Cryptographic Engineering 4/2023

22.05.2023 | Regular Paper

Spoofing attacks against vehicular FMCW radar

verfasst von: Rony Komissarov, Sharon Vaisman, Avishai Wool

Erschienen in: Journal of Cryptographic Engineering | Ausgabe 4/2023

Einloggen

Aktivieren Sie unsere intelligente Suche, um passende Fachinhalte oder Patente zu finden.

search-config
loading …

Abstract

The safety and security of the passengers in vehicles in the face of cyber attacks is a key concern in the automotive industry, especially with the emergence of the Advanced driver assistance systems and the vast improvement in autonomous vehicles. Such platforms use various sensors, including cameras, LiDAR and mmWave radar. These sensors themselves may present a potential security hazard if exploited by an attacker. In this paper we propose a system to attack an automotive FMCW mmWave radar, that uses fast chirp modulation. Using a single rogue radar, our attack system is capable of spoofing the distance and velocity measured by the victim vehicle simultaneously, presenting phantom measurements coherent with the laws of physics governing vehicle motion. The attacking radar controls the delay in order to spoof its distance, and uses phase compensation and control in order to spoof its velocity. After developing the attack theory, we demonstrate the spoofing attack by building a proof-of-concept hardware-based system, using a Software Defined Radio. We successfully demonstrate two real-world scenarios in which the victim radar is spoofed to detect either a phantom emergency stop or a phantom acceleration, while measuring coherent range and velocity. We also discuss several countermeasures that can mitigate the described attack.

Sie haben noch keine Lizenz? Dann Informieren Sie sich jetzt über unsere Produkte:

Springer Professional "Wirtschaft+Technik"

Online-Abonnement

Mit Springer Professional "Wirtschaft+Technik" erhalten Sie Zugriff auf:

  • über 102.000 Bücher
  • über 537 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Maschinenbau + Werkstoffe
  • Versicherung + Risiko

Jetzt Wissensvorsprung sichern!

Springer Professional "Technik"

Online-Abonnement

Mit Springer Professional "Technik" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 390 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Maschinenbau + Werkstoffe




 

Jetzt Wissensvorsprung sichern!

Springer Professional "Wirtschaft"

Online-Abonnement

Mit Springer Professional "Wirtschaft" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 340 Zeitschriften

aus folgenden Fachgebieten:

  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Versicherung + Risiko




Jetzt Wissensvorsprung sichern!

Fußnoten
1
A preliminary version of this paper appeared in ASHES’2021.
 
Literatur
1.
Zurück zum Zitat Bourdoux, A., Parashar, K., Bauduin, M.: Phenomenology of mutual interference of FMCW and PMCW automotive radars. In: 2017 IEEE Radar Conference (RadarConf), pp. 1709–1714. IEEE (2017) Bourdoux, A., Parashar, K., Bauduin, M.: Phenomenology of mutual interference of FMCW and PMCW automotive radars. In: 2017 IEEE Radar Conference (RadarConf), pp. 1709–1714. IEEE (2017)
2.
Zurück zum Zitat Cao, Y., Xiao, C., Cyr, B., Zhou, Y., Park, W., Rampazzi, S., Chen, Q.A., Fu, K., Mao, Z.M.: Adversarial sensor attack on LiDAR-based perception in autonomous driving. In: Proceedings of the 2019 ACM SIGSAC Conference on Computer and Communications Security, pp. 2267–2281 (2019) Cao, Y., Xiao, C., Cyr, B., Zhou, Y., Park, W., Rampazzi, S., Chen, Q.A., Fu, K., Mao, Z.M.: Adversarial sensor attack on LiDAR-based perception in autonomous driving. In: Proceedings of the 2019 ACM SIGSAC Conference on Computer and Communications Security, pp. 2267–2281 (2019)
3.
Zurück zum Zitat Changalvala, R., Malik, H.: LiDAR data integrity verification for autonomous vehicle. IEEE Access 7, 138018–138031 (2019)CrossRef Changalvala, R., Malik, H.: LiDAR data integrity verification for autonomous vehicle. IEEE Access 7, 138018–138031 (2019)CrossRef
4.
Zurück zum Zitat Chauhan, R.: A platform for false data injection in frequency modulated continuous wave radar. Master’s thesis, Utah State University (2014) Chauhan, R.: A platform for false data injection in frequency modulated continuous wave radar. Master’s thesis, Utah State University (2014)
5.
Zurück zum Zitat Chauhan, R., Gerdes, R.M., Heaslip, K.: Demonstration of a false-data injection attack against an FMCW radar. Embedded Security in Cars (ESCAR) (2014) Chauhan, R., Gerdes, R.M., Heaslip, K.: Demonstration of a false-data injection attack against an FMCW radar. Embedded Security in Cars (ESCAR) (2014)
6.
Zurück zum Zitat Choi, H., Lee, W.-C., Aafer, Y., Fei, F., Tu, Z., Zhang, X., Xu, D., Deng, X.: Detecting attacks against robotic vehicles: a control invariant approach. In: Proceedings of the 2018 ACM SIGSAC Conference on Computer and Communications Security, pp. 801–816 (2018) Choi, H., Lee, W.-C., Aafer, Y., Fei, F., Tu, Z., Zhang, X., Xu, D., Deng, X.: Detecting attacks against robotic vehicles: a control invariant approach. In: Proceedings of the 2018 ACM SIGSAC Conference on Computer and Communications Security, pp. 801–816 (2018)
7.
Zurück zum Zitat Eykholt, K., Evtimov, I., Fernandes, E., Li, B., Rahmati, A., Xiao, C., Prakash, A., Kohno, T., Song, D.: Robust physical-world attacks on deep learning visual classification. In: Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition, pp. 1625–1634 (2018) Eykholt, K., Evtimov, I., Fernandes, E., Li, B., Rahmati, A., Xiao, C., Prakash, A., Kohno, T., Song, D.: Robust physical-world attacks on deep learning visual classification. In: Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition, pp. 1625–1634 (2018)
8.
Zurück zum Zitat Fung, M.L., Chen, M.Z., Chen, Y.H.: Sensor fusion: a review of methods and applications. In: 2017 29th Chinese Control And Decision Conference (CCDC), pp. 3853–3860. IEEE (2017) Fung, M.L., Chen, M.Z., Chen, Y.H.: Sensor fusion: a review of methods and applications. In: 2017 29th Chinese Control And Decision Conference (CCDC), pp. 3853–3860. IEEE (2017)
9.
Zurück zum Zitat Gao, X., Xing, G., Roy, S., Liu, H.: Experiments with mmwave automotive radar test-bed. In: 2019 53rd Asilomar Conference on Signals, Systems, and Computers, pp. 1–6. IEEE (2019) Gao, X., Xing, G., Roy, S., Liu, H.: Experiments with mmwave automotive radar test-bed. In: 2019 53rd Asilomar Conference on Signals, Systems, and Computers, pp. 1–6. IEEE (2019)
10.
Zurück zum Zitat Giraldo, J., Urbina, D., Cardenas, A., Valente, J., Faisal, M., Ruths, J., Tippenhauer, N.O., Sandberg, H., Candell, R.: A survey of physics-based attack detection in cyber-physical systems. ACM Comput. Surv. (CSUR) 51(4), 1–36 (2018)CrossRef Giraldo, J., Urbina, D., Cardenas, A., Valente, J., Faisal, M., Ruths, J., Tippenhauer, N.O., Sandberg, H., Candell, R.: A survey of physics-based attack detection in cyber-physical systems. ACM Comput. Surv. (CSUR) 51(4), 1–36 (2018)CrossRef
11.
Zurück zum Zitat Goodin, C., Carruth, D., Doude, M., Hudson, C.: Predicting the influence of rain on LiDAR in ADAS. Electronics 8(1), 89 (2019)CrossRef Goodin, C., Carruth, D., Doude, M., Hudson, C.: Predicting the influence of rain on LiDAR in ADAS. Electronics 8(1), 89 (2019)CrossRef
13.
Zurück zum Zitat Ivanov, R., Pajic, M., Lee, I.: Attack-resilient sensor fusion for safety-critical cyber-physical systems. ACM Trans. Embed. Comput. Syst. (TECS) 15(1), 1–24 (2016)CrossRef Ivanov, R., Pajic, M., Lee, I.: Attack-resilient sensor fusion for safety-critical cyber-physical systems. ACM Trans. Embed. Comput. Syst. (TECS) 15(1), 1–24 (2016)CrossRef
14.
Zurück zum Zitat Jagielski, M., Jones, N., Lin, C.-W., Nita-Rotaru, C., Shiraishi, S.: Threat detection for collaborative adaptive cruise control in connected cars. In: Proceedings of the 11th ACM Conference on Security & Privacy in Wireless and Mobile Networks, pp. 184–189 (2018) Jagielski, M., Jones, N., Lin, C.-W., Nita-Rotaru, C., Shiraishi, S.: Threat detection for collaborative adaptive cruise control in connected cars. In: Proceedings of the 11th ACM Conference on Security & Privacy in Wireless and Mobile Networks, pp. 184–189 (2018)
16.
Zurück zum Zitat Kapoor, P., Vora, A., Kang, K.-D.: Detecting and mitigating spoofing attack against an automotive radar. In: 2018 IEEE 88th Vehicular Technology Conference (VTC-Fall), pp. 1–6. IEEE (2018) Kapoor, P., Vora, A., Kang, K.-D.: Detecting and mitigating spoofing attack against an automotive radar. In: 2018 IEEE 88th Vehicular Technology Conference (VTC-Fall), pp. 1–6. IEEE (2018)
17.
Zurück zum Zitat Komissarov, R., Kozlov, V., Filonov, D., Ginzburg, P.: Partially coherent radar unties range resolution from bandwidth limitations. Nat. Commun. 10(1), 1–9 (2019)CrossRef Komissarov, R., Kozlov, V., Filonov, D., Ginzburg, P.: Partially coherent radar unties range resolution from bandwidth limitations. Nat. Commun. 10(1), 1–9 (2019)CrossRef
18.
Zurück zum Zitat Kudarauskas, N.: Analysis of emergency braking of a vehicle. Transport 22(3), 154–159 (2007)CrossRef Kudarauskas, N.: Analysis of emergency braking of a vehicle. Transport 22(3), 154–159 (2007)CrossRef
19.
Zurück zum Zitat Lazaro, A., Porcel, A., Lazaro, M., Villarino, R., Girbau, D.: Spoofing attacks on FMCW radars with low-cost backscatter tags. Sensors 22(6), 2145 (2022)CrossRef Lazaro, A., Porcel, A., Lazaro, M., Villarino, R., Girbau, D.: Spoofing attacks on FMCW radars with low-cost backscatter tags. Sensors 22(6), 2145 (2022)CrossRef
20.
Zurück zum Zitat Lin, J.-J., Li, Y.-P., Hsu, W.-C., Lee, T.-S.: Design of an FMCW radar baseband signal processing system for automotive application. Springerplus 5(1), 42 (2016)CrossRef Lin, J.-J., Li, Y.-P., Hsu, W.-C., Lee, T.-S.: Design of an FMCW radar baseband signal processing system for automotive application. Springerplus 5(1), 42 (2016)CrossRef
21.
Zurück zum Zitat Liu, J., Park, J.-M.: Seeing is not always believing: detecting perception error attacks against autonomous vehicles. IEEE Trans. Dependable Secure Comput. 18(5), 2209–2223 (2021) Liu, J., Park, J.-M.: Seeing is not always believing: detecting perception error attacks against autonomous vehicles. IEEE Trans. Dependable Secure Comput. 18(5), 2209–2223 (2021)
22.
Zurück zum Zitat Lutz, S., Ellenrieder, D., Walter, T., Weigel, R.: On fast chirp modulations and compressed sensing for automotive radar applications. In: 2014 15th International Radar Symposium (IRS), pp. 1–6. IEEE (2014) Lutz, S., Ellenrieder, D., Walter, T., Weigel, R.: On fast chirp modulations and compressed sensing for automotive radar applications. In: 2014 15th International Radar Symposium (IRS), pp. 1–6. IEEE (2014)
23.
Zurück zum Zitat Mitomo, T., Ono, N., Hoshino, H., Yoshihara, Y., Watanabe, O., Seto, I.: A 77 GHz 90 nm CMOS transceiver for FMCW radar applications. IEEE J. Solid State Circuits 45(4), 928–937 (2010)CrossRef Mitomo, T., Ono, N., Hoshino, H., Yoshihara, Y., Watanabe, O., Seto, I.: A 77 GHz 90 nm CMOS transceiver for FMCW radar applications. IEEE J. Solid State Circuits 45(4), 928–937 (2010)CrossRef
24.
Zurück zum Zitat Miura, N., Machida, T., Matsuda, K., Nagata, M., Nashimoto, S., Suzuki, D.: A low-cost replica-based distance-spoofing attack on mmwave FMCW radar. In: Proceedings of the 3rd ACM Workshop on Attacks and Solutions in Hardware Security Workshop, pp. 95–100 (2019) Miura, N., Machida, T., Matsuda, K., Nagata, M., Nashimoto, S., Suzuki, D.: A low-cost replica-based distance-spoofing attack on mmwave FMCW radar. In: Proceedings of the 3rd ACM Workshop on Attacks and Solutions in Hardware Security Workshop, pp. 95–100 (2019)
25.
Zurück zum Zitat Moon, T., Park, J., Kim, S.: BlueFMCW: random frequency hopping radar for mitigation of interference and spoofing. EURASIP J. Adv. Signal Process. 2022(1), 1–17 (2022)CrossRef Moon, T., Park, J., Kim, S.: BlueFMCW: random frequency hopping radar for mitigation of interference and spoofing. EURASIP J. Adv. Signal Process. 2022(1), 1–17 (2022)CrossRef
26.
Zurück zum Zitat Nallabolu, P., Li, C.: A frequency-domain spoofing attack on FMCW radars and its mitigation technique based on a hybrid-chirp waveform. IEEE Trans. Microw. Theory Tech. 69(11), 5086–5098 (2021)CrossRef Nallabolu, P., Li, C.: A frequency-domain spoofing attack on FMCW radars and its mitigation technique based on a hybrid-chirp waveform. IEEE Trans. Microw. Theory Tech. 69(11), 5086–5098 (2021)CrossRef
28.
Zurück zum Zitat Navarro, A.: General properties of alpha beta, and alpha beta gamma tracking filters. NASA STI/Recon Technical Report N 77:24347 (1977) Navarro, A.: General properties of alpha beta, and alpha beta gamma tracking filters. NASA STI/Recon Technical Report N 77:24347 (1977)
29.
Zurück zum Zitat Nuand bladeRF, U.S.: USB. 3.0 software defined radio manual (2016) Nuand bladeRF, U.S.: USB. 3.0 software defined radio manual (2016)
30.
Zurück zum Zitat Quinonez, R., Giraldo, J., Salazar, L., Bauman, E., Cardenas, A., Lin, Z.: SAVIOR: securing autonomous vehicles with robust physical invariants. In: 29th USENIX Security Symposium (USENIX Security 20), pp. 895–912 (2020) Quinonez, R., Giraldo, J., Salazar, L., Bauman, E., Cardenas, A., Lin, Z.: SAVIOR: securing autonomous vehicles with robust physical invariants. In: 29th USENIX Security Symposium (USENIX Security 20), pp. 895–912 (2020)
31.
Zurück zum Zitat Quinonez, R., Safaoui, S., Summers, T., Thuraisingham, B., Cardenas, A.A.: Shared reality: detecting stealthy attacks against autonomous vehicles. In: Proceedings of the 2th Workshop on CPS & IoT Security and Privacy, pp. 15–26 (2021) Quinonez, R., Safaoui, S., Summers, T., Thuraisingham, B., Cardenas, A.A.: Shared reality: detecting stealthy attacks against autonomous vehicles. In: Proceedings of the 2th Workshop on CPS & IoT Security and Privacy, pp. 15–26 (2021)
32.
Zurück zum Zitat Ranganathan, A., Danev, B., Francillon, A., Capkun, S.: Physical-layer attacks on chirp-based ranging systems. In: Proceedings of the fifth ACM conference on Security and Privacy in Wireless and Mobile Networks, pp. 15–26 (2012) Ranganathan, A., Danev, B., Francillon, A., Capkun, S.: Physical-layer attacks on chirp-based ranging systems. In: Proceedings of the fifth ACM conference on Security and Privacy in Wireless and Mobile Networks, pp. 15–26 (2012)
33.
Zurück zum Zitat Song, D., Eykholt, K., Evtimov, I., Fernandes, E., Li, B., Rahmati, A., Tramer, F., Prakash, A., Kohno, T.: Physical adversarial examples for object detectors. In: 12th USENIX Workshop on Offensive Technologies (WOOT’18) (2018) Song, D., Eykholt, K., Evtimov, I., Fernandes, E., Li, B., Rahmati, A., Tramer, F., Prakash, A., Kohno, T.: Physical adversarial examples for object detectors. In: 12th USENIX Workshop on Offensive Technologies (WOOT’18) (2018)
34.
Zurück zum Zitat Stove, A.G.: Linear FMCW radar techniques. In: IEE Proceedings F (Radar and Signal Processing), vol. 139, no. 5, pp. 343–350 (1992) Stove, A.G.: Linear FMCW radar techniques. In: IEE Proceedings F (Radar and Signal Processing), vol. 139, no. 5, pp. 343–350 (1992)
35.
Zurück zum Zitat Sun, Z., Balakrishnan, S., Su, L., Bhuyan, A., Wang, P., Qiao, C.: Who is in control? Practical physical layer attack and defense for mmWave based sensing in autonomous vehicles. arXiv preprint arXiv:2011.10947 (2020) Sun, Z., Balakrishnan, S., Su, L., Bhuyan, A., Wang, P., Qiao, C.: Who is in control? Practical physical layer attack and defense for mmWave based sensing in autonomous vehicles. arXiv preprint arXiv:​2011.​10947 (2020)
36.
Zurück zum Zitat Tang, T., Wu, C., Elangage, J.: A signal processing algorithm of two-phase staggered PRI and slow time signal integration for MTI triangular FMCW multi-target tracking radars. Sensors 21(7), 2296 (2021)CrossRef Tang, T., Wu, C., Elangage, J.: A signal processing algorithm of two-phase staggered PRI and slow time signal integration for MTI triangular FMCW multi-target tracking radars. Sensors 21(7), 2296 (2021)CrossRef
37.
Zurück zum Zitat Thing, V.L., Wu, J.: Autonomous vehicle security: a taxonomy of attacks and defences. In: 2016 IEEE International Conference on Internet of Things (iThings) and IEEE Green Computing and Communications (GreenCom) and IEEE Cyber, Physical and Social Computing (CPSCom) and IEEE Smart Data (SmartData), pp. 164–170. IEEE (2016) Thing, V.L., Wu, J.: Autonomous vehicle security: a taxonomy of attacks and defences. In: 2016 IEEE International Conference on Internet of Things (iThings) and IEEE Green Computing and Communications (GreenCom) and IEEE Cyber, Physical and Social Computing (CPSCom) and IEEE Smart Data (SmartData), pp. 164–170. IEEE (2016)
38.
Zurück zum Zitat Tong, Z., Renter, R., Fujimoto, M.: Fast chirp FMCW radar in automotive applications. In: IET International Radar Conference 2015, pp. 1–4. IET (2015) Tong, Z., Renter, R., Fujimoto, M.: Fast chirp FMCW radar in automotive applications. In: IET International Radar Conference 2015, pp. 1–4. IET (2015)
39.
Zurück zum Zitat Wang, Z., Wu, Y., Niu, Q.: Multi-sensor fusion in automated driving: a survey. IEEE Access 8, 2847–2868 (2019)CrossRef Wang, Z., Wu, Y., Niu, Q.: Multi-sensor fusion in automated driving: a survey. IEEE Access 8, 2847–2868 (2019)CrossRef
41.
Zurück zum Zitat Winkler, V.: Range Doppler detection for automotive FMCW radars. In: 2007 European Radar Conference, pp. 166–169. IEEE (2007) Winkler, V.: Range Doppler detection for automotive FMCW radars. In: 2007 European Radar Conference, pp. 166–169. IEEE (2007)
42.
Zurück zum Zitat Yan, C., Xu, W., Liu, J.: Can you trust autonomous vehicles: contactless attacks against sensors of self-driving vehicle. DEF CON 24(8), 109 (2016) Yan, C., Xu, W., Liu, J.: Can you trust autonomous vehicles: contactless attacks against sensors of self-driving vehicle. DEF CON 24(8), 109 (2016)
43.
Zurück zum Zitat Ziebinski, A., Cupek, R., Erdogan, H., Waechter, S.: A survey of ADAS technologies for the future perspective of sensor fusion. In: International Conference on Computational Collective Intelligence, pp. 135–146. Springer (2016) Ziebinski, A., Cupek, R., Erdogan, H., Waechter, S.: A survey of ADAS technologies for the future perspective of sensor fusion. In: International Conference on Computational Collective Intelligence, pp. 135–146. Springer (2016)
Metadaten
Titel
Spoofing attacks against vehicular FMCW radar
verfasst von
Rony Komissarov
Sharon Vaisman
Avishai Wool
Publikationsdatum
22.05.2023
Verlag
Springer Berlin Heidelberg
Erschienen in
Journal of Cryptographic Engineering / Ausgabe 4/2023
Print ISSN: 2190-8508
Elektronische ISSN: 2190-8516
DOI
https://doi.org/10.1007/s13389-023-00321-5

Weitere Artikel der Ausgabe 4/2023

Journal of Cryptographic Engineering 4/2023 Zur Ausgabe