您的浏览器禁用了JavaScript(一种计算机语言,用以实现您与网页的交互),请解除该禁用,或者联系我们。 [FIDO联盟]:FIDO联盟:应对汽车行业的网络安全挑战 - 发现报告

FIDO联盟:应对汽车行业的网络安全挑战

交运设备 2025-07-17 FIDO联盟 徐雨泽
报告封面

July 2025 Abstract As the automotive industry transitions toward software-defined vehicles, autonomoustechnologies, and connected services, cybersecurity has become a critical concern.This white paper from the FIDO Alliance outlines key challenges and emerging solutions for securing next-generation vehicles. It examines global regulatory frameworks such as Audience This paper addresses the automotive industry.The audience includes automotivesystem engineers, automotive IVI product and development managers, automotivenetworking and in-vehicle cyber securityengineers,product managers forin-vehicle Contents Abstract..............................................................................................................................................................2Audience............................................................................................................................................................21Introduction.......................................................................................................................................52Evolution of the automotive industry........................................................................................53Meet the challenges and seize the opportunity......................................................................64Automotive cybersecurity and global legislation.................................................................65The FIDO Alliance and FIDO standards....................................................................................76FIDO for automotive cybersecurity compliance....................................................................87Overview of emerging use cases where FIDO standards may apply..............................88FIDO Alliance technology overview............................................................................................99FIDO Alliance technology deep dive........................................................................................109.1Passkeys and user authentication............................................................................................109.2Passkey components.....................................................................................................................119.3In-vehicle biometrics....................................................................................................................129.4FIDO Device Onboard (FDO).......................................................................................................1210FIDO technology use cases deep dive.................................................................................13 11Whyusing standards helps...................................................................................................1911.1Benefits of partnering with the FIDO Alliance......................................................................2012FIDO Certification programs for the automotive industry.........................................2013Conclusion and next steps......................................................................................................2114Appendix A-Global legislation applicable to automotive cybersecurity..............22 1Introduction The automotive industry is undergoing transformative changes, including the shift tosoftware-defined and autonomous vehicles, advanced IT-like architectures, over-the-air(OTA)updates, and the rise of in-vehicle commerce. While these changes offer new Global cybersecurity legislation, such asUN Regulation 155,UN Regulation156,andISO/SAE 21434, aim to protect vehicles from emerging threats. The FIDO Allianceplays a crucial role by providing standards for secure authentication, device onboarding, Utilizing standards helps automotive companies ensure consistent security, leveragecollective expertise, and avoid proprietary solutions that have the potential to stymienew markets and revenue. FIDO standards apply to various automotive applications, This paper provides companies within the automotive ecosystem an insight into thestandards and services the FIDO Alliance offers together with a review of current and The FIDO Alliance is seeking feedback and partnership with industry experts to helpensure that FIDO’s programs are fit for purpose and successfully help companies meet 2Evolution of the automotive industry The automotive industry has 140 years of history and is currently going through •Electrification and sustainability•Software-defined vehicles and connectivity•Autonomous and assisted driving•Shifting business models: Mobility-as-a-Service (MaaS) and direct sales•Supply chain disruptions and geopolitical risks These changes bring potential upside to manufacturers in terms of new revenue Vehicles have evolved from isolated mechanical systems into interconnected cyber-physical platforms (often created by various entities) that integrate complex software,hardware, and communicat