[Resource Topic] 2023/965: Post-Quantum Secure Over-the-Air Update of Automotive Systems

Post-Quantum Secure Over-the-Air Update of Automotive Systems

Authors: Joppe W. Bos, Alexander Dima, Alexander Kiening, Joost Renes


With the announcement of the first winners of the NIST Post-Quantum Cryptography (PQC) competition in 2022, the industry has now a confirmed foundation to revisit established cryptographic algorithms applied in automotive use cases and replace them with quantum-safe alternatives. In this paper, we investigate the application of the NIST competition winner CRYSTALS-Dilithium to protect the integrity and authenticity of over-the-air update packages. We show how this post-quantum secure digital signature algorithm can be integrated in AUTOSAR Adaptive Platform Update and Configuration Management framework and evaluate our approach practically using the NXP S32G vehicle network processor. We discuss two implementation variants with respect to performance and resilience against relevant attacks, and conclude that PQC has little impact on the update process as a whole.

ePrint: https://eprint.iacr.org/2023/965

