透過您的圖書館登入
IP:18.119.122.86
  • 期刊

Research on Standardization of Test Document Set Based on Automotive Penetration Test

摘要


In recent years, automotive cyber security incidents occur frequently, WP 29 Passed R155, the world's first mandatory automotive cyber security regulation. No matter from the perspective of security enhancement or meeting the requirements of standards and regulations, enterprises need to carry out penetration testing in the process of research and development. However, including standards and regulations, there is no uniform acceptance specification for the deliverables of penetration testing. According to KBA's requirements for type approval, type approval needs to review test documents in the R&D process, so the quality of test documents becomes particularly important. This paper aims to study the specification of penetration test document set based on domestic and foreign regulations and standards, and help enterprises improve the quality of penetration test documents.

參考文獻


E/ECE/TRANS/505/Rev.3/Add.154, (2021). UN Regulation No. 155 Uniform provisions concerning the approval of vehicles with regards to cyber security and cyber security management system. https://unece.org/sites/default/files/2021-03/R155e.pdf.
ISO/TC 22/SC 32 Electrical and electronic components and general system aspects, (2021). ISO/SAE 21434:2021(E) Road vehicles — Cybersecurity engineering.
Kraftfahrt-Bundesamt, (2021). Application of the Rules for designation/recognition for technical services (categories A, B, D) for testing in the context of the KBA-type approval procedure according to UN-R 155/156. https://www.kba.de/EN/Themen_en/Typgenehmigung_en/Zum_Herunterladen_en/BenennungTechnischerDienste_en/anwendung_Regeln_TD_R155_R156_en.pdf?__blob=publicationFile&v=3
GB/T 25000.51—2016 Systems and software engineering – Systems and software Quality Requirements and Evaluation (SQuaRE) – Part 51: Requirements for quality of Ready to Use Software Product (RUSP) and instructions for testing, China Standards Press
ISO/IEC 17025: 2017 General requirements for the competence of testing and calibration laboratories.

延伸閱讀