EVå é»ããŒããè»äž¡çé£ã®äŸµå ¥å£ã«ïŒå é»ã€ã³ãã©ã«æœã3ã€ã®é倧ãªè匱æ§Â
黿°èªåè»ïŒEVïŒã®æ®åãå éãããªããå é»ã€ã³ãã©ãå é»ã¹ããŒã·ã§ã³ã«å¯Ÿããã»ãã¥ãªãã£ç ç©¶ãæ¥éã«é²ãã§ããŸãããããŸã§å€ãã®ç ç©¶ã¯ãå ¬éãããWebã€ã³ã¿ãŒãã§ãŒã¹ãä¿è·ãäžååãªãŸãŸå ¬éç¶æ ã«ãããµãŒãã¹ãBluetoothãæªçšãããå é»ã¹ããŒã·ã§ã³åŽããžã®æ»æã«çŠç¹ãåœãŠãããŠããŸãããããããããŸã ååã«æ€èšŒãããŠããªãéèŠãªåãããããŸããããã¯ããEVã®å é»ããŒããéããŠè»äž¡ãã®ãã®ã䟵害ããããšã¯å¯èœãªã®ãããšãããã®ã§ãã
EVã®å é»ããŒãã¯ãè»äž¡å éšã®å é»ã³ã³ãããŒã©ECUïŒElectric Vehicle Communication Controllerã EVCCïŒã«çŽæ¥æ¥ç¶ãããŠããå€éšã€ã³ã¿ãŒãã§ãŒã¹ã§ããEVCCã¯ãISO 15118èŠæ Œã«åºã¥ããè»äž¡ãšå é»ã¹ããŒã·ã§ã³éã®é«åºŠãã€éèŠãªéä¿¡ãæ ãå¶åŸ¡ãŠãããã§ããã€ãŸããå é»ããŒãã¯è»äž¡ã®äžæ¢ã·ã¹ãã ãžãšçŽæ¥ã€ãªããå ¥å£ã§ããããŸããç©ççãªãã¢ã«ã¯å ç¢ãªã»ãã¥ãªãã£å¯ŸçãæœãããŠããŸãããå é»ããŒãçµç±ã§ã¢ã¯ã»ã¹å¯èœãªEVCCã«ã€ããŠã¯ãåçã¬ãã«ã®é²åŸ¡ãå®è£ ãããŠããªãã±ãŒã¹ãèŠåããããŸããä»®ã«EVCCã䟵害ãããå Žåãæ»æè ã¯è»äž¡å ã®éèŠã³ã³ããŒãã³ããžã¢ã¯ã»ã¹ã§ããæãããããè»äž¡å éšã§ã®è¶³ãããã確ç«ããªããæ»æç¯å²ãæ¡å€§ãããããšãèããããŸãã
æ¬èšäºã§ã¯ãå é»ããã»ã¹ã«ãããŠEVCCã䜿çšããäžäœéä¿¡ãããã³ã«ã®å šäœåãæŽçãããšãšãã«ãEVå é»ã€ã³ãã©ãæ±ããæœåšçãªã»ãã¥ãªãã£ãªã¹ã¯ãèå¯ããŸãã
ç¹ã«ãåœç€Ÿã®ãªãµãŒãããŒã ãçºèŠãã以äžã®3ã€ã®éèŠãªè匱æ§ã«ã€ããŠè©³ãã解説ããŸãã
- ECUããã³å
é»ã¹ããŒã·ã§ã³ã«å®è£
ãããV2Géä¿¡ã¹ã¿ãã¯ã«ãããè匱æ§
- æ»æè
ã«ããå
é»ã¹ããŒã·ã§ã³äŸµå®³ãå¯èœã«ãåŸãããªãŒãã³ãœãŒã¹ãã¬ãŒã ã¯ãŒã¯äžã®é倧ãªè匱æ§
- å é»ã¹ããŒã·ã§ã³éå¶äºæ¥è ã®ã¯ã©ãŠãããã¯ãšã³ãïŒOCPPïŒã«ååšããè匱æ§
ãããã®è匱æ§ãæªçšãããå é»ããŒãçµç±ã§EVCCãçŽæ¥äŸµå®³ãããå ŽåãåŸæ¥ãšã¯ç°ãªãæ°ããªæ»æçµè·¯ãçãŸããŸããããã¯ãè»äž¡çé£ã«çŽçµããããªããæ¥µããŠéå€§ãªæ»æãã¯ã¿ãŒãšãªãåŸãã®ã§ãã
EVå é»ãšã³ã·ã¹ãã ã®è€éæ§ãçè§£ãã
åçšå é»ã¹ããŒã·ã§ã³ã§ã¯ãè€æ°è»äž¡ãžã®é»åäŸçµŠãå¹ççã«å¶åŸ¡ããããã®è² è·åæ£ãã課éåŠçãžã®å¯Ÿå¿ãæ±ããããŸãããã®ãããå é»ã¹ããŒã·ã§ã³ãšEVã®éã§ã¯é«åºŠãã€è€éãªéä¿¡ãå¿ èŠã«ãªããŸããããã«ãå é»ã¹ããŒã·ã§ã³ã¯ããã¯ãšã³ããµãŒããŒã«ãã£ãŠäžå 管çãããŠããã皌åç¶æ³ã®ç£èŠããã¡ãŒã ãŠã§ã¢ã®æŽæ°ãé»åäŸçµŠã®æé©åãªã©ãè¡ãããŠããŸãããã®ããã«ãEVå é»ã®ä»çµã¿ã¯åãªããè»äž¡ãšå é»åšã®æ¥ç¶ãã«ãšã©ãŸããŸãããè»äž¡ãå é»ã¹ããŒã·ã§ã³ãã¯ã©ãŠãããã¯ãšã³ããå«ãå€å±€çãªãšã³ã·ã¹ãã ãšããŠæ§æãããŠããããããæ¯ããå°çšã€ã³ãã©ãšéçšãã¬ãŒã ã¯ãŒã¯ãäžå¯æ¬ ãšãªã£ãŠããŸãã
ãã®äžæ žãæ ãã®ããè»äž¡åŽã«æèŒãããEVCCã§ããEVCCã¯ãEVãšå é»ã¹ããŒã·ã§ã³éã®äžäœéä¿¡ïŒISO15118ã«åºã¥ãäžäœãããã³ã«éä¿¡ïŒãå¶åŸ¡ãã圹å²ãæ ã£ãŠããŸãããã®ECUã¯è»äž¡å éšã«é 眮ãããŠããŸãããEVCCãšã®éä¿¡ã¯å€éšã«é²åºããŠããå é»ãœã±ãããä»ããŠè¡ãããŸããã€ãŸããå é»ããŒãã¯ç©ççã«ã¯è»äž¡å€éšã«äœçœ®ããæ¯èŒç容æã«ã¢ã¯ã»ã¹ã§ããã€ã³ã¿ãŒãã§ãŒã¹ã§ããå é»ãœã±ããã®ãã¢ã«ãã£ãŠèŠãããŠã¯ãããã®ã®ãéä¿¡èªäœã¯ãã®ããŒããéããŠçŽæ¥è¡ãããŸãããã®çµæãæ»æè ã«ãšã£ãŠå é»ããŒãã¯é åçãªã¿ãŒã²ãããšãªãåŸãŸããã€ãŸããEVã®äŸµå ¥çµè·¯ãšããŠç¥ãããOBD IIããŒãã¯è»å ãžã®ç©ççã¢ã¯ã»ã¹ãå¿ èŠã§ãããå é»ããŒãã¯è»äž¡å€éšããã¢ã¯ã»ã¹å¯èœã§ããç¹ã倧ããªéãã§ãããã®æ§é çç¹æ§ããããEVå é»ã€ã³ãã©ã«ãããã»ãã¥ãªãã£æ€èšãããéèŠãªãã®ã«ããŠããŸãã
å é»ããŒããèµ·ç¹ãšããEVããã³EVSEãžã®æ»æ
è»äž¡ã®å é»ããŒããšã®éä¿¡ã«ã¯ãå°çšã®ããŒããŠã§ã¢ã䜿çšãããŸããåŸã ã«ããŠãå é»ããŒãã¯è»äž¡å ã®ä»ã®ã³ã³ããŒãã³ããšæ¯ã¹ãåçã¬ãã«ã®ã»ãã¥ãªãã£å¯ŸçãæœãããŠãããšã¯éããŸããããã®ãããEVCCãšã®åæéä¿¡ã¯æ¯èŒç容æã«å®çŸã§ããŸããç¹ã«ãè»å ãžã®ç©ççã¢ã¯ã»ã¹ãå¿ èŠãšããä»ã®ECUãšæ¯èŒãããšãã®é£æåºŠã®å·®ã¯æããã§ãã
å é»ããŒãã®æ§é ã¯å°åããšã«ç°ãªããŸããç±³åœã欧å·ãæ¥æ¬ãäžåœãªã©ãããããã®åžå Žã§ç°ãªãèŠæ Œããã³ãã©ãŒã ãã¡ã¯ã¿ãŒïŒã³ãã¯ã¿ã®ç©ç圢ç¶ïŒãæ¡çšãããŠããŸããACå é»ããã³DCå é»ããããã«å¯Ÿå¿ãããããå é»ãœã±ããã®åœ¢ç¶ããã³æ§æãå°åã«ãã£ãŠå·®ç°ããããŸããACå é»ã«é¢ããŠã¯ã欧å·ããã³äžåœã§ã¯IEC 62196-2ã«åºã¥ããType 2ã³ãã¯ã¿ïŒMennekesæ¹åŒïŒãåºãæ¡çšãããŠããŸããå°åããšã®èŠæ Œå·®ã¯ç©çèšèšã®éãã«ãšã©ãŸãããéä¿¡æ¹åŒãå®è£ ã¢ãããŒãã«ã圱é¿ãäžãããããã»ãã¥ãªãã£æ€èšã«ãããŠãéèŠãªèŠçŽ ãšãªããŸãã
DCå é»ã«ãããŠã¯ãå°åããšã®å·®ç°ãããé¡èã«çŸããŸããç±³åœã§ã¯CCS1ãæ¬§å·ã§ã¯CCS2ãæ¥æ¬ã§ã¯CHAdeMOãäžåœã§ã¯GB/Tãäž»ã«æ¡çšãããŠããŸãã
EVSEãšEVéã®éä¿¡ã®ä»çµã¿
åçšEVå é»èšåïŒElectric Vehicle Supply EquipmentãEVSEïŒã¯ãåã«é»åãäŸçµŠããã ãã§ã¯ãããŸããã課éåŠçã®ç®¡çãé»å系統ãšã®å é»ã¹ã±ãžã¥ãŒã«èª¿æŽãæ¥ç¶è»äž¡ã®èªèšŒãªã©å€å²ã«ãããæ©èœãæ ã£ãŠããŸããããããå®çŸãããããEVSEã¯è»äž¡åŽã®EVCCãšéä¿¡ãè¡ããŸãããã®éä¿¡ã¯ãISO 15118ã§High Level CommunicationïŒHLCïŒãšå®çŸ©ãããããžã¿ã«éä¿¡ã«åºã¥ããŠããŸããHLCã¯ãPower Line CommunicationïŒPLCïŒæè¡ãçšããŠå®è¡ãããŸããå ·äœçã«ã¯ãå é»ããŒãã®éä¿¡ã©ã€ã³ã®1ã€ã§ããControl PilotïŒCPïŒã©ã€ã³äžã®ä¿¡å·ã«ããžã¿ã«ããŒã¿ãéç³ããããšã§éä¿¡ãè¡ããŸããPLCã«ããè«çãããã¯ãŒã¯ã®ç¢ºç«æ¹æ³ã¯ãHomePlug Green PHYïŒGPïŒä»æ§ã§å®çŸ©ãããŠããŸãããã®äžã§çšããããSignal Level Attenuation CharacterizationïŒSLACïŒãããã³ã«ã¯ãåäžãã¹ïŒéä¿¡éç³ãããéä¿¡ãã¹ïŒäžã®éä¿¡ãšã³ãã£ãã£ïŒEVãããã¯ãå€éšè黿± ãªã©ã®å é»å¯Ÿè±¡æ©åšïŒãèå¥ããããã«äœ¿çšãããŸããSLACããã»ã¹ãå®äºãããšãEVããã³EVSEã®åæ¹ã«IPv6ã¢ãã¬ã¹ãå²ãåœãŠãããŸããããã«ãããè»äž¡ãšå é»ã¹ããŒã·ã§ã³éã§ã€ãŒãµãããããŒã¹ã®éåžžéä¿¡ãéå§ãããŸãããã®æ®µéãããEVãšEVSEã¯ISO 15118ãŸãã¯DIN SPEC 70121ã§å®çŸ©ããããããã³ã«ãçšããŠã¡ãã»ãŒãžã亀æã§ããããã«ãªããŸãã
ç©çå±€ããã³ãªã³ã¯å±€ã®ç¢ºç«åŸãEVã¯ãããã¯ãŒã¯äžã§EVSEã®ã¢ãã¬ã¹ãæ€åºãããããUDPãããŒããã£ã¹ãã¡ãã»ãŒãžãéä¿¡ããŸããããã¯SECC Discovery ProtocolïŒSDPïŒã®äžéšã§ãããæ¯èŒççæéã§å®äºããããã»ã¹ã§ãããªããISO 15118ã§ã¯EVSEãSupply Equipment Communication ControllerïŒSECCïŒãšåŒã¶ããšããããŸããEVSEã¯ãå©çšå¯èœãªIPv6ã¢ãã¬ã¹ã䜿çšãããã©ã³ã¹ããŒããããã³ã«ïŒUDPãŸãã¯TCPïŒãããã«TLSãå©çšãããåŠããšãã£ãæ å ±ãå¿çããŸãããã®åŸãEVã¯å é»ãéå§ããããã»ã¹ã®äžã§V2Gã¡ãã»ãŒãžãçšããŠEVSEãšéä¿¡ãç¶ç¶ããŸãã
V2Gã¡ãã»ãŒãžã¯ISO 15118ãŸãã¯DIN SPEC 70121ã§å®çŸ©ãããŠãããXMLæ§é ã§è¡šçŸãããŸãããããã®XMLã¡ãã»ãŒãžã¯ãEfficient XML InterchangeïŒEXIïŒã«ãã£ãŠãã€ããªåœ¢åŒãžãšã³ã³ãŒããããéä¿¡ã¹ã¿ãã¯å ã®åºç€ã¬ã€ã€ãŒãšããŠæ©èœããŸããæçµçã«ãåV2Gã¡ãã»ãŒãžã¯V2GTPã§å®çŸ©ããã圢åŒã«åŸãããã€ããŒãé·ãã¡ãã»ãŒãžã¿ã€ãããããã³ã«ããŒãžã§ã³ãå«ã8ãã€ãã®ãã©ã³ã¹ããŒãããããŒãä»å ããŠéåä¿¡ãããŸãã

ã±ãŒã¹1ïŒopen-plc-utilsã«ãããSLACå®è£ ã®ãããã¡ãªãŒããŒãããŒ
åœç€Ÿã®ãªãµãŒãããŒã ã¯ãopen-plc-utilsãããžã§ã¯ãã«ãããŠé倧ãªã¹ã¿ãã¯ããŒã¹ã®ãããã¡ãªãŒããŒãããŒè匱æ§ãçºèŠããŸããã察象ãšãªã£ãã®ã¯ãSignal Level Attenuation CharacterizationïŒSLACïŒãããã³ã«ã®å®è£ éšåã§ããSLACã¯ãEVãšå é»ã¹ããŒã·ã§ã³éã§å®å®ããPowerline CommunicationïŒPLCïŒã確ç«ããããã«äžå¯æ¬ ãªãããã³ã«ã§ããã€ãŸãããã®ã¬ã€ã€ãŒã¯å é»éä¿¡ã®åºç€ãæ¯ããéèŠãªæ§æèŠçŽ ãšãããŸããæ¬è匱æ§ïŒCVE-2025-27071ïŒã¯ãåä¿¡ãããã¯ãŒã¯ãã±ããå ã®ã°ã«ãŒãæ°ã瀺ããã£ãŒã«ãïŒnumber of groupsïŒã«å¯Ÿããæ€èšŒäžåã«èµ·å ããŸãããã®ãã£ãŒã«ãã¯ãæžè¡°æž¬å®å€ãæ ŒçŽããå¯å€é·é åã®ãµã€ãºã決å®ãã圹å²ãæã£ãŠããŸãã
EVåŽããã³å é»ã¹ããŒã·ã§ã³ïŒEVSEïŒåŽã®äž¡å®è£ ã«ãããŠãã³ãŒãã¯ãã®ãŠãŒã¶ãŒå¶åŸ¡å¯èœãªå€ãååŸããå¢çãã§ãã¯ãè¡ããªããŸãŸã¡ã¢ãªã³ããŒåŠçã«äœ¿çšããŠããŸããããã®çµæãåºå®ãµã€ãºïŒ58ãã€ãïŒã§ã¹ã¿ãã¯äžã«ç¢ºä¿ããããããã¡ïŒäžèšå³ïŒAGGãã€ã³ã¿sessionïŒã«å¯Ÿããæå€§255ãŸã§ã®å€ãæå®ããããšã§ãããã¡ãªãŒããŒãããŒãåŒãèµ·ããããšãå¯èœãšãªããŸããopen-plc-utilsãããžã§ã¯ãèªäœã¯10å¹Žä»¥äžæŽæ°ãããŠããŸããã§ããããLinuxããŒã¹ã®å é»ã¹ããŒã·ã§ã³ç°å¢ã§ã¯äŸç¶ãšããŠåºãå©çšãããŠããŸãããã®ããããã®è匱æ§ã¯çè«äžã®åé¡ã«ãšã©ãŸãããå®éçšç°å¢ã«ã圱é¿ãåãŒãåŸãé倧ãªãªã¹ã¯ãšãããŸããæ¬ä»¶ã¯2024幎12æã«Qualcommãžå ±åããããã®åŸã»ãã¥ãªãã£ã¢ããã€ã¶ãªãå ¬éãããŸãããããã«ã2025幎åŸåã«ã¯ãªãŒãã³ãœãŒã¹ãããžã§ã¯ãã«å¯ŸãããããããªãªãŒã¹ãããŠããŸãã
å é»ã¹ããŒã·ã§ã³ã¯IoTããã€ã¹ã§ãã
çµã¿èŸŒã¿ã³ã³ãã¥ãŒãã£ã³ã°æ©èœããããã¯ãŒã¯æ¥ç¶æ§ããããŠãŠãŒã¶ãŒåãã¢ããªã±ãŒã·ã§ã³ãšã®é£æºæ©èœãåããå é»ã¹ããŒã·ã§ã³ã¯ãå žåçãªIoTããã€ã¹ã®äžäŸãšãããŸããå€ãã®EVSEã¯LinuxãããŒã¹ã«åäœããŠããããªãŒãã³ãœãŒã¹OSã®å®å®æ§ãšæè»æ§ã掻çšããŠåºç€æ©èœã管çããŠããŸãããŸããäžè¬çãªEVSEã¯è€æ°ã®éä¿¡ææ®µãåããŠãããã»ã«ã©ãŒéä¿¡ã«ããã€ã³ã¿ãŒãããæ¥ç¶ãWi-FiãBluetoothãä»ãããŠãŒã¶ãŒã¢ããªãšã®æ¥ç¶ãããã«ã¯NFCã«ããã¹ããŒãã«ãŒãèªèšŒãªã©ã«å¯Ÿå¿ããŠããŸãã
ãããŸã§ãããããéä¿¡çµè·¯ãEVSEã«å¯Ÿããäž»ãªæ»æãã¯ã¿ãŒãšã¿ãªãããŠããŸãããå®éã«å ¬éãããŠããã»ãã¥ãªãã£ç ç©¶ã®å€ãã¯ãWi-Fiçµç±ã§å ¬éãããè匱ãªãµãŒãã¹ã®æªçšããLinuxã®Bluetoothã¹ã¿ãã¯ã«ååšããæ¢ç¥ã®è匱æ§ã®æªçšããã®ä»ã®è¿è·é¢éä¿¡ãã£ãã«ãæšçãšãããã®ã§ããã
ã±ãŒã¹2ïŒå é»ã¹ããŒã·ã§ã³ã«ããããªã¢ãŒãã³ãŒãå®è¡
åœç€Ÿã®ãªãµãŒãããŒã ã¯ãEVerestãã¬ãŒã ã¯ãŒã¯ã®EvseV2Gã¢ãžã¥ãŒã«ã«ãããV2G Transport ProtocolïŒV2GTPïŒå®è£ éšåã«æŽæ°ãªãŒããŒãããŒã®è匱æ§ãçºèŠããŸããããã®é倧ãªè匱æ§ã¯ããŒããªãŒããŒãããŒãåŒãèµ·ãããLinuxããã»ã¹äžã§ä»»æã³ãŒããå®è¡å¯èœã«ããŸãããã®çµæãå é»æã®æ±ºæžå¶åŸ¡ã®åé¿ãå é»ã¹ããŒã·ã§ã³ïŒEVSEïŒå ã«ä¿åãããç§å¯éµã®çªåãããã«ã¯äŸµå®³ãããå é»ã¹ããŒã·ã§ã³ã«ãªãããŸããŠOpen Charge Point ProtocolïŒOCPPïŒãéããŠãã³ããŒã®ããã¯ãšã³ããšéä¿¡ããããšãŸã§å¯èœãšãªããŸãã
EVerestã¯ãLinux Foundationãæ¯æŽãããªãŒãã³ãœãŒã¹ã®ã¢ãžã¥ãŒã«åEVå é»ã¹ã¿ãã¯ãã¬ãŒã ã¯ãŒã¯ã§ããä»åçºèŠããè匱æ§ïŒCVE-2024-37310ïŒã¯ãV2GTPã¬ã€ã€ãŒã«ååšããç¹ã«ãã€ããŒãé·ã®è§£æåŠçã«èµ·å ããåé¡ã§ããå ·äœçã«ã¯ãåä¿¡ããŒã¿é·ã«8ãã€ããå ç®ããŠæ€èšŒããåŠçã«ãããŠã32ãããæŽæ°ã®ã©ããã¢ã©ãŠã³ãïŒå€ãæå€§å€ãè¶ ãããšæå°å€ã«æ»ãçŸè±¡ïŒãèæ ®ããªãå®è£ ãè¡ãããŠããŸããããã®çµæãæ¬æ¥ã¯äžæ£å€ãšããŠã¯ããããã¹ã巚倧ãªããŒã¿ããå¢çãã§ãã¯ãééããŠããŸããŸããæçµçã«ãåºå®ãµã€ãºã®ããŒããããã¡ãžéå°ãªããŒã¿ãæžã蟌ãŸããããŒããªãŒããŒãããŒãçºçããŸãã
æ»æè ã¯ãããšãã°0xFFFFFFFFã®ãããªæªæãããã€ããŒãé·ãæå®ããããšã§ãæ€èšŒæã«æŽæ°ãªãŒããŒãããŒãçºçãããããšãå¯èœã§ãããã®çµæãæ¬æ¥ã¯8192ãã€ãã®ãããã¡å®¹éãè¶ ããããŒã¿ãå¶éããããã®ã»ãã¥ãªãã£ãã§ãã¯ãåé¿ã§ããŠããŸããŸããããããŠã·ã¹ãã ã¯ãåºå®ãµã€ãºã®ããŒããããã¡ã«å¯ŸããŠå®è³ªçã«ç¡å¶éã®ããŒã¿åä¿¡ã詊ã¿ãããšãšãªããããŒããªãŒããŒãããŒãçºçããŸããæ¬è匱æ§ã¯CVSSã¹ã³ã¢9.0ãšããé倧è©äŸ¡ãåããŠãããå é»ããŒãçµç±ã§ã®ãªã¢ãŒãã³ãŒãå®è¡ãå¯èœã«ããæ¥µããŠæ·±å»ãªåé¡ã§ãã
忣åå é»ã¹ããŒã·ã§ã³ã¯ã¯ã©ãŠãã§ç®¡çãããããšãå€ã
å é»ã¹ããŒã·ã§ã³ãããã¯ãŒã¯ã®æ§ç¯ã¯ãåŸæ¥ã®ã¬ãœãªã³äŸçµŠç¶²ãšã¯æ¬è³ªçã«ç°ãªããŸãã忣é 眮ãããå é»ã¹ããŒã·ã§ã³ã¯ãEVãèŠæ±ããé»åãä»»æã®ã¿ã€ãã³ã°ã§ç¡å¶éã«äŸçµŠã§ããããã§ã¯ãããŸãããäŸçµŠå¯èœãªé»åéãå é»ã¹ã±ãžã¥ãŒã«ã¯ãäžå€®ç®¡çã·ã¹ãã ãšã®éã§èª¿æŽã»æé©åãããå¿ èŠããããŸãããã®å¶åŸ¡ãæ ãã®ããäžè¬ã«Charge Point OperatorïŒCPOïŒãšåŒã°ããå é»ã€ã³ãã©ã»ãããã¯ãŒã¯ç®¡çãéå¶ããäŒç€Ÿã®äžå€®ããã¯ãšã³ãã§ããCPOã¯Open Charge Point ProtocolïŒOCPPïŒãçšããŠåEVSEã管çã»å¶åŸ¡ããŸããäžæ¹ãEVãšå é»ã¹ããŒã·ã§ã³éã®æ å ±äº€æã¯ãISO 15118ã§å®çŸ©ãããHigh-Level CommunicationïŒHLCïŒã«åºã¥ãå®è¡ãããŸãããã®ããžã¿ã«éä¿¡ã¯ãå é»ã³ãã¯ã¿ã®Control Pilotãã³äžã§Powerline CommunicationïŒPLCïŒæè¡ãçšããŠè¡ãããŸããã€ãŸããEVå é»ãšã³ã·ã¹ãã ã¯ãè»äž¡âå é»åšâã¯ã©ãŠãããšããäžå±€æ§é ã§æãç«ã£ãŠãããåã¬ã€ã€ãŒãçžäºã«é£æºããããšã§åããŠæ©èœããŸãã
CPOã¯ã管ç察象ã®ã¹ããŒã·ã§ã³ã®è¿ãã«èšçœ®ããããã©ã€ããŒããµãŒããŒã§éçšãããå ŽåããããŸãããããå®éã«ã¯ãEVSEãã€ã³ã¿ãŒãããäžã«å ¬éããããµãŒããŒãžçŽæ¥æ¥ç¶ããŠããã±ãŒã¹ã倿°ç¢ºèªãããŸãããããã«åé¡ãªã®ã¯ãèªèšŒãããã¯ãšã³ãåŽã®æ£åœæ§ç¢ºèªã®ã¿ã«äœ¿çšãããæ¥ç¶ããŠããEVSEåŽã®æ€èšŒãååã«è¡ãããŠããªãæ§æãååšããŠããç¹ã§ãããã®ãããªèšèšã§ã¯ã第äžè ããµãŒããŒã«å¯ŸããŠã¯ãšãªãéä¿¡ããããæ£èŠã®å é»ã¹ããŒã·ã§ã³ãè£ ã£ãŠæ¥ç¶ããããŒã¿ååŸãããŒãã¹ãã£ã³ãè¡ãããšãå¯èœã«ãªããŸãã
ã±ãŒã¹3ïŒCPOããã¯ãšã³ãã¯ã©ãŠããµãŒããŒã®äŸµå®³
ç§ãã¡ã®èª¿æ»ã§ã¯ãä»»æã®ã¯ã©ãŠãããŒã¹æ»æãåãåŸãå ¬éãµãŒããŒã確èªãããŸããããã®è匱æ§ãæªçšããããšã§ãæ»æè ã¯ç®¡çè ã¬ãã«ã®æš©éã§EVSE矀ãå¶åŸ¡ã§ããå¯èœæ§ããããŸãã
ããã¡ãŒã«ãŒã®Androidã¢ããªãè§£æããéçšã§ãOCPPéä¿¡ãåŠçããŠããããã¯ãšã³ãCPOãµãŒããŒãç¹å®ããŸããããã®ãµãŒããŒã¯Spring Bootãã¬ãŒã ã¯ãŒã¯äžã§çšŒåããŠãããç®¡çæ©èœãããã©ã«ãã§æå¹åãããç¶æ ã§ããããã®èšå®ã¯æ¥µããŠå±éºã§ããæ»æè ã¯ç®¡ççšã®æ©å¯ãšã³ããã€ã³ããžã¢ã¯ã»ã¹ãããµãŒããŒäžã§çšŒåããJava Virtual MachineïŒJVMïŒã®ãã«ããŒããã³ãïŒã¡ã¢ãªäžã«ä¿æãããŠããæ å ±ãäžžããšååŸããæ©èœïŒãååŸã§ããå¯èœæ§ããããŸãããã®çµæãã¯ã©ãŠãåŽããå é»ã¹ããŒã·ã§ã³å šäœãææ¡ãããšãããæ¥µããŠé倧ãªãªã¹ã¯ãçããŸãã
ååŸãããããŒããã³ããè§£æãããšãæ»æè ã¯æ¥µããŠæ©å¯æ§ã®é«ãæ å ±ãæœåºã§ããå¯èœæ§ãããããšãããããŸãããå ·äœçã«ã¯ãäŒæ¥æ å ±ã§ããå®è£ ã³ãŒãããã¹ã¯ãŒããURLãåçš®æ©å¯æ å ±ãçµç¹ã®ã¡ãŒã«ã¢ãã¬ã¹ãããã«ã¯åœè©²å é»ã¹ããŒã·ã§ã³ãå©çšããè»äž¡ã®VINïŒè»å°çªå·ïŒãªã©ãå«ãŸããŸãããã®åœ±é¿ã¯æ·±å»ã§ããCPOããã¯ãšã³ãã䟵害ãããå Žåãæ»æè ã¯ç®¡çäžã«ããå é»ã¹ããŒã·ã§ã³çŸ€ãé éããå¶åŸ¡ã§ããå¯èœæ§ããããŸããããã«ããããã¡ãŒã ãŠã§ã¢ã¢ããããŒãã®æ¹ãããäŸçµŠé»åã¬ãã«ã®æäœããããã¯ãããã¯ãŒã¯å šäœã§ã®ç¡åå é»ã®èš±å¯ãšãã£ãäžæ£è¡çºãçŸå®çãªè åšãšãªããŸãã
ç§ãã¡ã¯æ¬è匱æ§ã確èªåŸãçŽã¡ã«è©²åœãµãŒããŒã®ç®¡çè ãžéç¥ããåé¡ã¯éããã«æ¯æ£ãããŸããã
䟵害ãããEVCCãããããæ°ããªè»äž¡çé£ãªã¹ã¯
æ¬èšäºã§åãäžããäžé£ã®è匱æ§ã«ãããå é»ããŒãçµç±ã§EVCCãçŽæ¥äŸµå®³ããããšãå¯èœã«ãªããŸããããã¯ãè»äž¡çé£ã«ãããæ°ããªãã€éå€§ãªæ»æãã¯ã¿ãŒãæå³ããŸããåŸæ¥ã®æ»æææ³ã§ã¯ãè»äž¡å éšãžç©ççã«äŸµå ¥ããCANãã¹ãžã¢ã¯ã»ã¹ããå¿ èŠããããŸãããããããEVCCã䟵害ãããå Žåãå€éšããã¢ã¯ã»ã¹å¯èœãªã€ã³ã¿ãŒãã§ãŒã¹ãèµ·ç¹ãšããŠãè»äž¡å éšãããã¯ãŒã¯ãžã®è¶³ããããåŸãããŸãã
EVè»äž¡çé£ã«é¢ããŠæ³å®ãããåºæ¬çãªæ»æãã§ãŒã³ã¯ä»¥äžã®éãã§ãã
- å
é»ããŒãçµç±ã§ã®äŸµå®³
æ»æè ã¯ããããŸã§ã«èª¬æãããããã¡ãªãŒããŒãããŒãæŽæ°ãªãŒããŒãããŒãšãã£ãè匱æ§ãæªçšããå€éšã®å é»ããŒãããEVCCã䟵害ããŸããããã«ãããEVCCäžã§ã®ãªã¢ãŒãã³ãŒãå®è¡ãå¯èœãšãªããŸãã - è»äž¡å
éšãããã¯ãŒã¯ãžã®ã¢ã¯ã»ã¹
EVCCã¯è»äž¡å éšãããã¯ãŒã¯ã«æ¥ç¶ãããŠããŸãã䟵害åŸãæ»æè ã¯ãã®æ¥ç¶ãå©çšããŠãä»»æã®CANã¡ãã»ãŒãžãè»äž¡ãã¹ãžéä¿¡ã§ããæãããããŸãã - è»äž¡ã³ãã³ãã®åœè£
泚å
¥
éä¿¡ãããä»»æã¡ãã»ãŒãžãæ£èŠã³ãã³ãã«æãããŸããå Žåãé»åã€ã¢ãã©ã€ã¶ãŒã®åé¿ããã¢ããã¯ã®è§£é€ãããã«ã¯è»äž¡å§åãšãã£ãæäœãå¯èœã«ãªãæãããããŸããçµæãšããŠãç©ççãªéµãçšããããšãªãè»äž¡ãçé£ã§ããã·ããªãªãæç«ããŸãã
ãã®æ»æãç¹ã«å±éºã§ããçç±ã¯ãEVCCããã®æ©èœäžãå€éšãšå éšãããã¯ãŒã¯ãæ¥ç¶ããã²ãŒããŠã§ã€ç圹å²ãæ ã£ãŠããç¹ã«ãããŸããã€ãŸããæ¬æ¥ã¯å 黿©èœã®ããã«éãããã€ã³ã¿ãŒãã§ãŒã¹ããé©åãªé²åŸ¡ããªããã°äŸµå ¥å£ãžãšå€ããåŸããšããããšãªã®ã§ãã
EVCCãèµ·ç¹ãšããè»äž¡çé£ãžã®å¯Ÿç
EVCCã®äŸµå®³ãæ°ããªè»äž¡çé£ãªã¹ã¯ãšããªãããã«ãèªåè»ã¡ãŒã«ãŒã«ã¯å€å±€çãªã»ãã¥ãªãã£ã¢ãããŒãã®æ¡çšãæ±ããããŸãã
- ã¢ã³ããšã¯ã¹ããã€ã察çã®å®è£
EVCCãã¡ãŒã ãŠã§ã¢ã«å¯Ÿããã¹ã¿ãã¯ã«ããªã¢ãMemory Protection UnitïŒMPUïŒãšãã£ãææ°ã®ã¢ã³ããšã¯ã¹ããã€ã察çïŒè匱æ§ãååšããŠãæ»ææç«ãé²ãé²åŸ¡æ©æ§ïŒãé©çšãããããã¡ãªãŒããŒãããŒãªã©ã®èåŒ±æ§æªçšãå°é£ã«ããããšãéèŠã§ãã - è»äž¡ãããã¯ãŒã¯ã®ã»ã°ã¡ã³ããŒã·ã§ã³
è»äž¡ãããã¯ãŒã¯èšèšã«ãããŠãEVCCã®ãããªå€éšãšæ¥ç¶ããECUãããšã³ãžã³å§åããã¢ããã¯å¶åŸ¡ãªã©ã®å®å šäžéèŠãªå¶åŸ¡ç³»ãå±ããé åã«ããECUããåé¢ããããšãäžå¯æ¬ ã§ããEVCCã¯å€éšã€ã³ã¿ãŒãã§ãŒã¹ã«æ¥ç¶ããæ»æå¯Ÿè±¡ãšãªãåŸãããããããã転éãããã¡ãã»ãŒãžã«ã€ããŠã¯ãå ç¢ãªã²ãŒããŠã§ã€ãéããŠå³æ Œãªãã£ã«ã¿ãªã³ã°ãèªèšŒãåŠ¥åœæ§æ€èšŒã宿œããå¿ èŠããããŸãã
çµè«ãšæèš
é»ååã®é²å±ã«äŒŽããå
ç¢ãªå
é»ã€ã³ãã©ã¯è»äž¡ã¢ãŒããã¯ãã£ã®äžéšãšããŠäžå¯åã®ååšãšãªã£ãŠããŸãããã®ãããå
é»ããŒããšããå€éšã€ã³ã¿ãŒãã§ãŒã¹ãä»ããŠè»äž¡å
éšãããã¯ãŒã¯ãžå°éå¯èœã§ãããšããæ§é çç¹æ§ã¯ãæ°ããªèšèšäžã®æ€èšèª²é¡ãæç€ºããŠããŸããæ¬èšäºã§ç޹ä»ããè匱æ§ã¯ãç¹å®ã®å®è£
äžåã«ãšã©ãŸãããéä¿¡ã¹ã¿ãã¯ããããã¯ãŒã¯èšèšã®åæã«å
åšãããªã¹ã¯ã瀺ããã®ã§ããäœã¬ã€ã€ãŒãããã³ã«ïŒç©çã»ãªã³ã¯å±€ãªã©ïŒã®å®å
šæ§ãå€éšæ¥ç¶ECUã®ä¿¡é Œå¢çã®èšå®ãã¯ã©ãŠãããã¯ãšã³ãã®ä¿è·ãšãã£ãåå±€ã«ãããŠãå€å±€çãªé²åŸ¡èšèšãæ±ããããŸããEVå
é»ç°å¢ã®å®å
šæ§ã確ä¿ããããã«ã¯ãåå¥ã®è匱æ§å¯Ÿçã«å ããã¢ãŒããã¯ãã£å
šäœã俯ç°ããã»ãã¥ãªãã£èšèšãšç¶ç¶çãªæ€èšŒãäžå¯æ¬ ã§ããç¹ã«ãèšè𿮵éããã®ã»ãã¥ãªãã£æ€èšŒããã³å®ç°å¢ãæ³å®ãããããã¬ãŒã·ã§ã³ãã¹ãã®å®æœã¯æ¥µããŠéèŠã§ããå
é»ããŒããåãªãå©äŸ¿æ§ã®ããã®ã€ã³ã¿ãŒãã§ãŒã¹ãšããŠã§ã¯ãªããå€éšããã®äŸµå
¥çµè·¯ãšãªãåŸãå¢çç¹ãšããŠæããèŠç¹ãä»åŸãŸããŸãéèŠã«ãªãã§ãããã
EVå
é»ç°å¢ã®å®å
šæ§ã確ä¿ããããã«ã¯ã以äžã®å¯Ÿçãè¬ããããšãéèŠã§ãã
- èŠæ ŒèŠä»¶ããã³ããŒããŠã§ã¢æ§æã«åºã¥ããECUãžé©åãªã»ãã¥ãªãã£å¶åŸ¡ãå®è£ ãã
- ãµãŒãããŒãã£è£œããŒã«ããªãŒãã³ãœãŒã¹ãœãããŠã§ã¢ã®å©çšã«éããŠã¯ãååãªã»ãã¥ãªãã£è©äŸ¡ãè¡ã
- CPOã®èšèšã»å®è£ ã«ãããŠã»ãã¥ãªãã£ãåæãšããïŒäŸïŒç®¡çãšã³ããã€ã³ãã®ä¿è·ãOCPPãµãŒããŒã®å ¬éç¯å²ã®å¶éïŒ
PlaxidityX ãµã€ããŒã»ãã¥ãªãã£ãªãµãŒãïŒãœãªã¥ãŒã·ã§ã³ããŒã ã«ã€ããŠ
PlaxidityXã®ãµã€ããŒã»ãã¥ãªã㣠ãªãµãŒãïŒãœãªã¥ãŒã·ã§ã³ããŒã ã¯ãèªåè»æ¥çã«ç¹åãããµã€ããŒã»ãã¥ãªãã£ã®ç ç©¶ããã³ãœãªã¥ãŒã·ã§ã³æäŸãè¡ã£ãŠããŸããè»äž¡ã¢ãŒããã¯ãã£ãéä¿¡ãããã³ã«ãé¢é£èŠæ Œã«å¯Ÿããæ·±ãçè§£ãåºç€ã«ãå æ¬çãªãµã€ããŒã»ãã¥ãªãã£ãµãŒãã¹ãæäŸããŠããŸãã
ããŒã ã¯ãè»äž¡ãšã³ã·ã¹ãã å šäœã察象ãšããã»ãã¥ãªãã£è©äŸ¡ã»ãœãªã¥ãŒã·ã§ã³ã«åãçµãã§ããŸããããããŸã§ã«äž»èŠèªåè»ã¡ãŒã«ãŒããã³Tier 1ãµãã©ã€ã€ãŒãšå€æ°ã®ãããã¬ãŒã·ã§ã³ãã¹ãããã³ç ç©¶ãããžã§ã¯ãã宿œããå®ç°å¢ãæ³å®ããæ€èšŒãéããŠèšèšäžã®èª²é¡æœåºãšæ¹åæ¯æŽãè¡ã£ãŠããŸãããŸããUN R155ãISO 21434ãšãã£ãåœéèŠå¶ã»æšæºãžã®å¯Ÿå¿æ¯æŽãå«ããéçºããã»ã¹å šäœã«çµã¿èŸŒãŸããã»ãã¥ãªãã£äœå¶ã®æ§ç¯ããµããŒãããŠããŸãã
ãªãµãŒããããžã§ã¯ãã®å®æœãããPlaxidityXã®å é²çãªè£œåå°å ¥ãŸã§ãé²åããè åšã«å¯Ÿå¿ããããã®ç¥èŠãšæè¡ãæäŸããè»äž¡ã©ã€ããµã€ã¯ã«å šäœã«ãããã»ãã¥ãªãã£ç¢ºä¿ãæ¯æŽããŸãã
å·çïŒ2026幎02æ09æ¥