Subvert Trust Controls: UDS Security Access

ID Name
T2033.001 Code Signing
T2033.002 UDS Security Access

Adversaries may exploit UDS Security Access in vehicle cybersecurity to gain unauthorized access to critical ECU services. This technique involves cracking the challenge and response mechanism used to unlock secure features. By reversing the challenge and response function, adversaries can extract the key and bypass the security measures in place.

This attack method allows adversaries to access and modify sensitive vehicle components, such as read/write memory, without proper authorization.

ID: T2033.002
Sub-technique of:  T2033
Tactic: Defense Evasion
Version: 1.0
Created: 03 December 2023
Last Modified: 03 December 2023

Mitigations

This type of attack technique cannot be easily mitigated with preventive controls since it is based on the abuse of system features.