์ฝ˜ํ…์ธ ๋กœ ์ด๋™

Automotive Cybersecurity โ€” ๊ฐœ์š” ๋ฐ ์ปจ์…‰ ๋งต

ํ•™์Šต ํ”Œ๋žœ

  • ๋ ˆ๋ฒจ: Intermediate โ†’ Advanced (SoC Secure Boot / ARM Security ์ง€์‹ ๊ธฐ๋ฐ˜, ์ฐจ๋Ÿ‰ ๋ณด์•ˆ์œผ๋กœ ํ™•์žฅ)
  • ๋ชฉํ‘œ: ์ฐจ๋Ÿ‰ ๋‚ด๋ถ€ ํ†ต์‹ (CAN Bus)์˜ ๋ณด์•ˆ ํ•œ๊ณ„์™€ SoC ๋ ˆ๋ฒจ ๋ฐฉ์–ด ์•„ํ‚คํ…์ฒ˜๋ฅผ ํ™”์ดํŠธ๋ณด๋“œ์— ๊ทธ๋ฆฌ๋ฉฐ, Tesla FSD ํƒˆ์˜ฅ ์‚ฌ๋ก€๋ฅผ ๊ณต๊ฒฉ/๋ฐฉ์–ด ๊ด€์ ์—์„œ ๋…ผ๋ฆฌ์ ์œผ๋กœ ์„ค๋ช…ํ•  ์ˆ˜ ์žˆ๋Š” ์ˆ˜์ค€

์‚ฌ์ „ ์ง€์‹ / ์„ ์ˆ˜ ํ•™์Šต

์ฃผ์ œ ํ•„์ˆ˜/๊ถŒ์žฅ ์ฐธ๊ณ  ์ž๋ฃŒ
SoC Secure Boot ํ•„์ˆ˜ soc_secure_boot_ko/ โ€” HW RoT, Chain of Trust, ์„œ๋ช… ๊ฒ€์ฆ
ARM Security (TrustZone) ํ•„์ˆ˜ arm_security_ko/ โ€” EL, Secure/Non-Secure World, TEE
AMBA ๋ฒ„์Šค ๊ธฐ์ดˆ ๊ถŒ์žฅ amba_protocols_ko/ โ€” AXI/APB ํŠธ๋žœ์žญ์…˜ (Gateway SoC ์ดํ•ด์— ํ•„์š”)
์•”ํ˜ธํ•™ ๊ธฐ์ดˆ ๊ถŒ์žฅ soc_secure_boot_ko/03_crypto_in_boot.md โ€” HMAC, ๋Œ€์นญํ‚ค, PKI

ํ•ต์‹ฌ ์šฉ์–ด์ง‘ (Glossary)

ํ•™์Šต ์ „ ๋ฐ˜๋“œ์‹œ ์•Œ์•„์•ผ ํ•  ์šฉ์–ด. ๊ฐ ์œ ๋‹›์—์„œ ๋ฐ˜๋ณต์ ์œผ๋กœ ๋“ฑ์žฅํ•œ๋‹ค.

์ฐจ๋Ÿ‰ ๊ตฌ์„ฑ ์š”์†Œ

์•ฝ์–ด ํ’€๋„ค์ž„ ์„ค๋ช…
ECU Electronic Control Unit ์ฐจ๋Ÿ‰์˜ ์ „์ž ์ œ์–ด ์žฅ์น˜. ์—”์ง„, ๋ธŒ๋ ˆ์ดํฌ, ์—์–ด๋ฐฑ ๋“ฑ ๊ฐ ๊ธฐ๋Šฅ๋งˆ๋‹ค ๋ณ„๋„ ECU๊ฐ€ ์กด์žฌ. ํ˜„๋Œ€ ์ฐจ๋Ÿ‰์—๋Š” 70~100๊ฐœ ์ด์ƒ ํƒ‘์žฌ
MCU Microcontroller Unit ECU์˜ ํ•ต์‹ฌ ์นฉ. ์ž„๋ฒ ๋””๋“œ ํ”„๋กœ์„ธ์„œ + ๋ฉ”๋ชจ๋ฆฌ + ์ฃผ๋ณ€์žฅ์น˜๊ฐ€ ํ•˜๋‚˜์˜ ์นฉ์— ํ†ตํ•ฉ
SoC System on Chip MCU๋ณด๋‹ค ๊ณ ์„ฑ๋Šฅ. CPU + GPU + NPU + ๋ฉ”๋ชจ๋ฆฌ ์ปจํŠธ๋กค๋Ÿฌ ๋“ฑ์„ ๋‹จ์ผ ์นฉ์— ์ง‘์ . Tesla FSD ์นฉ์ด ๋Œ€ํ‘œ์  ์˜ˆ
TCU Telematics Control Unit ์ฐจ๋Ÿ‰์˜ "์ธํ„ฐ๋„ท ๊ด€๋ฌธ". ์…€๋ฃฐ๋Ÿฌ(LTE/5G), WiFi, GPS ๋ชจ๋“ˆ์„ ํฌํ•จํ•˜์—ฌ ์™ธ๋ถ€์™€ ํ†ต์‹ 
ADAS Advanced Driver Assistance Systems ์ฒจ๋‹จ ์šด์ „์ž ๋ณด์กฐ ์‹œ์Šคํ…œ. ์ž๋™ ๊ธด๊ธ‰ ์ œ๋™, ์ฐจ์„  ์œ ์ง€, ์ ์‘ํ˜• ํฌ๋ฃจ์ฆˆ ์ปจํŠธ๋กค ๋“ฑ
FSD Full Self-Driving Tesla์˜ ์™„์ „ ์ž์œจ์ฃผํ–‰ ์†Œํ”„ํŠธ์›จ์–ด. ๊ตฌ๋…($99/์›”) ๋˜๋Š” ์ผ์‹œ๋ถˆ($8,000+) ๋ชจ๋ธ
HSM Hardware Security Module ECU/SoC ๋‚ด๋ถ€์˜ ๊ฒฉ๋ฆฌ๋œ ๋ณด์•ˆ ์ฝ”์–ด. ์•”ํ˜ธํ‚ค ์ €์žฅ + ์•”ํ˜ธ ์—ฐ์‚ฐ ์ „๋‹ด. Application Core์—์„œ ํ‚ค์— ์ง์ ‘ ์ ‘๊ทผ ๋ถˆ๊ฐ€
RSU Road Side Unit ๋„๋กœ๋ณ€์— ์„ค์น˜๋œ V2X ํ†ต์‹  ๊ธฐ์ง€๊ตญ. ๊ตํ†ต ์‹ ํ˜ธ, ๋„๋กœ ์ƒํƒœ ์ •๋ณด๋ฅผ ์ฐจ๋Ÿ‰์— ๋ธŒ๋กœ๋“œ์บ์ŠคํŠธ
IMU Inertial Measurement Unit ๊ด€์„ฑ ์ธก์ • ์žฅ์น˜. ๊ฐ€์†๋„๊ณ„ + ์ž์ด๋กœ์Šค์ฝ”ํ”„๋กœ ์ฐจ๋Ÿ‰์˜ ์›€์ง์ž„(๊ฐ€์†, ํšŒ์ „)์„ ์ธก์ •

ํ†ต์‹  ํ”„๋กœํ† ์ฝœ / ์ธํ„ฐํŽ˜์ด์Šค

์•ฝ์–ด ํ’€๋„ค์ž„ ์„ค๋ช…
CAN Controller Area Network 1983๋…„ Bosch๊ฐ€ ๊ฐœ๋ฐœํ•œ ์ฐจ๋Ÿ‰ ๋‚ด๋ถ€ ์ง๋ ฌ ๋ฒ„์Šค. ๋ธŒ๋กœ๋“œ์บ์ŠคํŠธ ๋ฐฉ์‹, ์ธ์ฆ/์•”ํ˜ธํ™” ์—†์Œ
CAN-FD CAN with Flexible Data-rate CAN ํ™•์žฅ. payload 8Bโ†’64B, ์†๋„ 8Mbps. ๋ณด์•ˆ์€ ์—ฌ์ „ํžˆ ์—†์Œ
CAN-XL CAN Extra Long ์ฐจ์„ธ๋Œ€ CAN. payload 2048B, 20Mbps, CANsec ๋ณด์•ˆ ๋‚ด์žฅ
OBD-II On-Board Diagnostics II ๋ฒ•์  ์˜๋ฌด ์žฅ์ฐฉ(1996~ ๋ฏธ๊ตญ)๋œ ์ฐจ๋Ÿ‰ ์ง„๋‹จ ํฌํŠธ. 16ํ•€ ์ปค๋„ฅํ„ฐ๋กœ CAN Bus์— ์ง์ ‘ ์—ฐ๊ฒฐ ๊ฐ€๋Šฅ
V2X Vehicle-to-Everything ์ฐจ๋Ÿ‰ ๋Œ€ ๋ชจ๋“  ๊ฒƒ ํ†ต์‹ . V2V(์ฐจ๋Ÿ‰๊ฐ„), V2I(์ธํ”„๋ผ), V2P(๋ณดํ–‰์ž), V2N(๋„คํŠธ์›Œํฌ) ํฌํ•จ
DSRC Dedicated Short Range Communications WiFi ๊ธฐ๋ฐ˜ V2X ํ†ต์‹  (802.11p, 5.9GHz). ์ €์ง€์—ฐ(~2ms)
C-V2X Cellular V2X ์…€๋ฃฐ๋Ÿฌ(LTE/5G) ๊ธฐ๋ฐ˜ V2X. 3GPP ํ‘œ์ค€. ๋„“์€ ์ปค๋ฒ„๋ฆฌ์ง€
AUTOSAR AUTomotive Open System ARchitecture ์ฐจ๋Ÿ‰ ์†Œํ”„ํŠธ์›จ์–ด ํ‘œ์ค€ ์•„ํ‚คํ…์ฒ˜. ECU ์†Œํ”„ํŠธ์›จ์–ด์˜ ๊ณ„์ธต ๊ตฌ์กฐ์™€ ์ธํ„ฐํŽ˜์ด์Šค๋ฅผ ์ •์˜
OTA Over-The-Air ๋ฌด์„  ์›๊ฒฉ ์†Œํ”„ํŠธ์›จ์–ด ์—…๋ฐ์ดํŠธ. ์ •๋น„์†Œ ๋ฐฉ๋ฌธ ์—†์ด ์ฐจ๋Ÿ‰ FW ๊ฐฑ์‹ 

๋ณด์•ˆ ๊ธฐ์ˆ  / ๋ชจ๋“ˆ

์•ฝ์–ด ํ’€๋„ค์ž„ ์„ค๋ช…
SecOC Secure Onboard Communication AUTOSAR๊ฐ€ ์ •์˜ํ•œ CAN ๋ฉ”์‹œ์ง€ ์ธ์ฆ ๋ชจ๋“ˆ. MAC + Freshness Value๋กœ ๋ฐœ์‹ ์ž ์ธ์ฆ
TEE Trusted Execution Environment ์‹ ๋ขฐ ๊ฐ€๋Šฅํ•œ ๊ฒฉ๋ฆฌ ์‹คํ–‰ ํ™˜๊ฒฝ. ARM TrustZone์˜ Secure World๊ฐ€ ๋Œ€ํ‘œ์  ๊ตฌํ˜„
IDS Intrusion Detection System ์นจ์ž… ํƒ์ง€ ์‹œ์Šคํ…œ. CAN ํŠธ๋ž˜ํ”ฝ ์ด์ƒ์„ ํƒ์ง€ํ•˜์ง€๋งŒ ์ฐจ๋‹จ(prevention)์€ ํ•˜์ง€ ์•Š์Œ
SHE Secure Hardware Extension ์ž๋™์ฐจ์šฉ ๊ธฐ๋ณธ HSM ํ‘œ์ค€. AES-128-CMAC, 11๊ฐœ ํ‚ค ์Šฌ๋กฏ
EVITA E-safety Vehicle Intrusion Protected Applications ๊ณ ๊ธ‰ ์ž๋™์ฐจ HSM ํ‘œ์ค€. Medium/Full ๋“ฑ๊ธ‰, RSA/ECC/AES ์ง€์›
SCS Security Subsystem Tesla FSD ์นฉ์˜ ๋ณด์•ˆ ์„œ๋ธŒ์‹œ์Šคํ…œ. Secure Boot + Cloud Auth ๋‹ด๋‹น
PKI Public Key Infrastructure ๊ณต๊ฐœํ‚ค ๊ธฐ๋ฐ˜ ์ธํ”„๋ผ. ์ธ์ฆ์„œ ๋ฐœ๊ธ‰/๊ฒ€์ฆ/ํ๊ธฐ ์ฒด๊ณ„
SCMS Security Credential Management System V2X ์ „์šฉ PKI. ๊ฐ€๋ช… ์ธ์ฆ์„œ๋กœ ํ”„๋ผ์ด๋ฒ„์‹œ ๋ณดํ˜ธ

์•”ํ˜ธํ•™ ๊ธฐ๋ณธ ์šฉ์–ด

์•ฝ์–ด ํ’€๋„ค์ž„ ์„ค๋ช…
MAC Message Authentication Code ๋ฉ”์‹œ์ง€ ์ธ์ฆ ์ฝ”๋“œ. ๋น„๋ฐ€ํ‚ค๋กœ ์ƒ์„ฑํ•˜๋Š” ํƒœ๊ทธ โ€” ์œ„์กฐ ๊ฐ์ง€์šฉ (์•”ํ˜ธํ™”์™€ ๋‹ค๋ฆ„!)
AES Advanced Encryption Standard ๋Œ€์นญํ‚ค ์•”ํ˜ธ ์•Œ๊ณ ๋ฆฌ์ฆ˜. 128/256๋น„ํŠธ ํ‚ค. ํ˜„๋Œ€ ์ฐจ๋Ÿ‰ ๋ณด์•ˆ์˜ ํ•ต์‹ฌ
CMAC Cipher-based MAC AES ๊ธฐ๋ฐ˜ MAC ์ƒ์„ฑ ๋ฐฉ์‹. SecOC์—์„œ CAN ๋ฉ”์‹œ์ง€ ์ธ์ฆ์— ์‚ฌ์šฉ
GCM Galois/Counter Mode AES ์•”ํ˜ธํ™” + ์ธ์ฆ์„ ๋™์‹œ์— ์ˆ˜ํ–‰ํ•˜๋Š” ๋ชจ๋“œ. CANsec/MACsec์—์„œ ์‚ฌ์šฉ
RSA/ECC โ€” / Elliptic Curve Cryptography ๋น„๋Œ€์นญํ‚ค ์•Œ๊ณ ๋ฆฌ์ฆ˜. RSA(ํฐ ํ‚ค, ํ˜ธํ™˜์„ฑ), ECC(์ž‘์€ ํ‚ค, ํšจ์œจ)

๊ทœ์ œ / ํ‘œ์ค€

์•ฝ์–ด ํ’€๋„ค์ž„ ์„ค๋ช…
UN R155 UN Regulation No. 155 ์ฐจ๋Ÿ‰ ์‚ฌ์ด๋ฒ„๋ณด์•ˆ ๊ด€๋ฆฌ ์‹œ์Šคํ…œ(CSMS) ์˜๋ฌดํ™”. 2024~ ์‹ ์ฐจ ์ ์šฉ
UN R156 UN Regulation No. 156 ์†Œํ”„ํŠธ์›จ์–ด ์—…๋ฐ์ดํŠธ ๊ด€๋ฆฌ ์‹œ์Šคํ…œ(SUMS) ์˜๋ฌดํ™”
ISO 21434 ISO/SAE 21434 ์ฐจ๋Ÿ‰ ์‚ฌ์ด๋ฒ„๋ณด์•ˆ ์—”์ง€๋‹ˆ์–ด๋ง ๊ตญ์ œ ํ‘œ์ค€. TARA(์œ„ํ˜‘ ๋ถ„์„) ํ”„๋ ˆ์ž„์›Œํฌ ํฌํ•จ
TARA Threat Analysis and Risk Assessment ISO 21434 ์š”๊ตฌ ์œ„ํ˜‘ ๋ถ„์„ ๋ฐฉ๋ฒ•๋ก . ์ž์‚ฐโ†’์œ„ํ˜‘โ†’์˜ํ–ฅโ†’๊ณต๊ฒฉ ๊ฐ€๋Šฅ์„ฑโ†’์œ„ํ—˜๋„ ํ‰๊ฐ€

๊ณต๊ฒฉ ๊ธฐ๋ฒ• ์•ฝ์–ด

์•ฝ์–ด ํ’€๋„ค์ž„ ์„ค๋ช…
DoS Denial of Service ์„œ๋น„์Šค ๊ฑฐ๋ถ€ ๊ณต๊ฒฉ. CAN์—์„œ๋Š” ๋Œ€๋Ÿ‰ ํ”„๋ ˆ์ž„ ์ „์†ก์œผ๋กœ ํ†ต์‹  ๋งˆ๋น„
MITM Man-in-the-Middle ์ค‘๊ฐ„์ž ๊ณต๊ฒฉ. ํ†ต์‹  ์ค‘๊ฐ„์—์„œ ๋ฉ”์‹œ์ง€๋ฅผ ๊ฐ€๋กœ์ฑ„๊ฑฐ๋‚˜ ๋ณ€์กฐ
FI Fault Injection ๋ฌผ๋ฆฌ์  ์˜ค๋ฅ˜ ์ฃผ์ž…. ์ „์••/ํด๋Ÿญ ๊ธ€๋ฆฌ์น˜๋กœ CPU์˜ ๋ณด์•ˆ ๊ฒ€์ฆ ์šฐํšŒ
SCA Side-Channel Attack ๋ถ€์ฑ„๋„ ๊ณต๊ฒฉ. ์ „๋ ฅ ์†Œ๋ชจ, ์ „์ž๊ธฐ ๋ฐฉ์ถœ, ํƒ€์ด๋ฐ ์ฐจ์ด์—์„œ ๋น„๋ฐ€ ์ •๋ณด ์ถ”์ถœ
SDR Software-Defined Radio ์†Œํ”„ํŠธ์›จ์–ด ์ •์˜ ๋ผ๋””์˜ค. GPS spoofing ๋“ฑ์— ์‚ฌ์šฉ๋˜๋Š” ๋ฒ”์šฉ ๋ฌด์„  ์žฅ๋น„

๊ธฐํƒ€ ํ•ต์‹ฌ ๊ฐœ๋…

์šฉ์–ด ์„ค๋ช…
Freshness Value Replay(์žฌ์ „์†ก) ๊ณต๊ฒฉ ๋ฐฉ์–ด์šฉ ์ผํšŒ์„ฑ ๊ฐ’. ์นด์šดํ„ฐ ๋˜๋Š” ํƒ€์ž„์Šคํƒฌํ”„. SecOC์˜ ํ•ต์‹ฌ ๊ตฌ์„ฑ ์š”์†Œ
Arbitration CAN ๋ฒ„์Šค์—์„œ ๋™์‹œ ์ „์†ก ์‹œ ์šฐ์„ ์ˆœ์œ„ ๊ฒฐ์ • ๊ณผ์ •. ID๊ฐ€ ๋‚ฎ์„์ˆ˜๋ก ์šฐ์„ . Dominant(0) > Recessive(1)
Defense in Depth ๋‹ค์ค‘ ๊ณ„์ธต ๋ฐฉ์–ด ์ „๋žต. ๋‹จ์ผ ๋ ˆ์ด์–ด ๋ŒํŒŒ ์‹œ์—๋„ ๋‹ค์Œ ๋ ˆ์ด์–ด๊ฐ€ ๋ฐฉ์–ด
VIN Vehicle Identification Number. ์ฐจ๋Ÿ‰ ๊ณ ์œ  ์‹๋ณ„ ๋ฒˆํ˜ธ (17์ž๋ฆฌ)
Geofence GPS ์ขŒํ‘œ ๊ธฐ๋ฐ˜ ๊ฐ€์ƒ ์ง€๋ฆฌ์  ๊ฒฝ๊ณ„. Tesla FSD๋Š” ์ด๋ฅผ ํ†ตํ•ด ์Šน์ธ ์ง€์—ญ๋งŒ ํ—ˆ์šฉ
Feature Flag ์†Œํ”„ํŠธ์›จ์–ด ๊ธฐ๋Šฅ์˜ ํ™œ์„ฑํ™”/๋น„ํ™œ์„ฑํ™” ์Šค์œ„์น˜. Tesla FSD ํƒˆ์˜ฅ์˜ ๊ณต๊ฒฉ ๋Œ€์ƒ

์ปจ์…‰ ๋งต

+================================================================+
|              Automotive Cybersecurity                           |
|                                                                |
|  +---------------------------+  +---------------------------+  |
|  |   In-Vehicle Network      |  |   SoC Security            |  |
|  |                           |  |                           |  |
|  |  CAN Bus (1980s, ๋ฌด์ธ์ฆ)  |  |  HSM (ํ‚ค ์ €์žฅ + MAC)      |  |
|  |  CAN-FD (๋” ํฐ payload)   |  |  SecOC (๋ฉ”์‹œ์ง€ ์ธ์ฆ)      |  |
|  |  CAN-XL (CANsec ๋‚ด์žฅ)     |  |  Secure Gateway (๊ฒฉ๋ฆฌ)    |  |
|  |  Automotive Ethernet      |  |  TEE (TrustZone)         |  |
|  +------------+--------------+  +------------+--------------+  |
|               |                              |                 |
|               +-------------+----------------+                 |
|                             |                                  |
|               +-------------v--------------+                   |
|               |    Attack & Defense         |                  |
|               |                            |                  |
|               |  CAN Injection / Spoofing  |                  |
|               |  GPS Spoofing              |                  |
|               |  Fault Injection           |                  |
|               |  Replay Attack             |                  |
|               |  IDS / Firewall / OTA      |                  |
|               +-------------+--------------+                   |
|                             |                                  |
|               +-------------v--------------+                   |
|               |    Case Study              |                   |
|               |    Tesla FSD Jailbreak     |                   |
|               |    (2025-2026)             |                   |
|               +----------------------------+                   |
+================================================================+

ํ•™์Šต ๋‹จ์œ„ (Units)

# ๋‹จ์œ„ ํ•ต์‹ฌ ์งˆ๋ฌธ
1 CAN Bus Fundamentals ์ฐจ๋Ÿ‰ ๋‚ด๋ถ€ ํ†ต์‹ ์€ ์–ด๋–ป๊ฒŒ ๋™์ž‘ํ•˜๊ณ , ์™œ ๊ตฌ์กฐ์ ์œผ๋กœ ์ทจ์•ฝํ•œ๊ฐ€?
2 Automotive SoC Security SoC ๋ ˆ๋ฒจ์—์„œ CAN ํ†ต์‹ ์„ ์–ด๋–ป๊ฒŒ ๋ณดํ˜ธํ•˜๋Š”๊ฐ€? (HSM, SecOC, Gateway)
3 Tesla FSD Case Study FSD ํƒˆ์˜ฅ์€ ์–ด๋–ค ์ทจ์•ฝ์ ์„ ์•…์šฉํ–ˆ๊ณ , ์–ด๋–ค ๋ฐฉ์–ด๊ฐ€ ๋น ์กŒ๋Š”๊ฐ€?
4 Attack Surface & Defense ์ฐจ๋Ÿ‰ ๋ณด์•ˆ์˜ ์ „์ฒด ๊ณต๊ฒฉ ํ‘œ๋ฉด๊ณผ ๋ฐฉ์–ด ๊ณ„์ธต์€ ๋ฌด์—‡์ธ๊ฐ€?
5 Quick Reference Card ๋ฉด์ ‘ ์ง์ „ ๋น ๋ฅธ ๋ณต์Šต์šฉ ์š”์•ฝ ์นด๋“œ

ํ•™์Šต ์˜์กด์„ฑ ํ๋ฆ„

Unit 1 (CAN Bus) โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
  "์ฐจ๋Ÿ‰ ๋‚ด๋ถ€ ํ†ต์‹ ์˜ ๊ตฌ์กฐ์™€ ํ•œ๊ณ„"                  โ”‚
     โ”‚                                          โ”‚
     v                                          โ”‚
Unit 2 (SoC Security) โ”€โ”€โ”€โ”                     โ”‚
  "SoC๊ฐ€ ์ œ๊ณตํ•˜๋Š” ๋ฐฉ์–ด ์ˆ˜๋‹จ"โ”‚                     โ”‚
     โ”‚                    โ”‚                     โ”‚
     v                    v                     v
Unit 3 (Tesla Case)   Unit 4 (Attack/Defense)
  "์‹ค์ œ ์‚ฌ๋ก€ ๋ถ„์„"       "์ฒด๊ณ„์  ๊ณต๊ฒฉ/๋ฐฉ์–ด ๋ถ„๋ฅ˜"
     โ”‚                    โ”‚
     +โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€+
                โ”‚
                v
         Unit 5 (Quick Reference)
           "๋ฉด์ ‘/๋ณต์Šต ์š”์•ฝ"

Secure Boot / ARM Security์™€์˜ ์—ฐ๊ฒฐ

[soc_secure_boot_ko]          [arm_security_ko]
  HW RoT, Chain of Trust        TrustZone, TEE
  ์„œ๋ช… ๊ฒ€์ฆ, Anti-Rollback       EL3/S-EL1 ๊ฒฉ๋ฆฌ
        \                        /
         \                      /
          +-----> [์ด ๋ชจ๋“ˆ] <---+
                  Automotive์—์„œ์˜ ์ ์šฉ:
                  - HSM = HW RoT์˜ ์ฐจ๋Ÿ‰ ๋ฒ„์ „
                  - SecOC = Chain of Trust์˜ ๋ฉ”์‹œ์ง€ ๋ฒ„์ „
                  - Secure Gateway = TrustZone์˜ ๋ฒ„์Šค ๋ฒ„์ „