考試陷阱與易混淆觀念

命題單位最愛測的「看似相像、實則不同」概念整理。
每個陷阱以折疊式 callout 呈現,先想答案再展開。


⚠️ Trap 1:Cybersecurity Goal vs. Cybersecurity Claim vs. Cybersecurity Requirement


⚠️ Trap 2:CAL 與 ASIL 是同一個東西嗎?


⚠️ Trap 3:Attack Feasibility 分數越高 = 越容易嗎?


⚠️ Trap 4:Cybersecurity Plan vs. Cybersecurity Case


⚠️ Trap 5:Cybersecurity Validation 在 Clause 11 是什麼層級?


⚠️ Trap 6:Distributed Activities 中誰負責 TARA?


⚠️ Trap 7:OTS / Out-of-Context Component 差別


⚠️ Trap 8:UN R155 vs. UN R156


⚠️ Trap 9:Cybersecurity Monitoring (Clause 8) 不只是「監看 CAN bus」


⚠️ Trap 10:Tailoring 的合法範圍


⚠️ Trap 11:Penetration Testing 必須在哪個階段?


⚠️ Trap 12:Asset / Damage Scenario / Threat Scenario 順序


⚠️ Trap 13:Cybersecurity Case 的「Argument」結構


⚠️ Trap 14:Release for Post-Development 的條件


⚠️ Trap 15:Continual Activities 的「邊界」