The invention provides a management method and device for preventing BMS
firmware from being flashed, and relates to the technical field of asymmetric
encryption, and the method comprises the steps: generating a unique response, and reconstructing an equipment root key, so as to establish a trusted
firmware execution environment and complete
firmware digital signature verification; digital
certificate exchange and bidirectional
verification of the BMS and the
diagnostic instrument are carried out in the trusted firmware execution environment, a dynamic
session key is generated, and a
challenge response mechanism is executed to ensure that firmware flashing operation is only authorized in the trusted communication environment; performing hash check,
control flow monitoring and access auditing by using the security reference data based on the dynamic
session key, performing real-time hardware
processing when an exception is detected, and recording a security event at the same time; and the BMS uploads the log and
attack behavior characteristics corresponding to the security event to a cloud platform, and the cloud platform analyzes and generates a detection rule or
certificate revocation list and issues and updates the detection rule or
certificate revocation list. Through the dynamic BMS firmware flashing protection method, the safety of the BMS firmware is improved.