Automotive
Vehicle cybersecurity, production interfaces, supplier evidence and lifecycle decisions under ISO/SAE 21434 and UN R155.
What changes in automotive
Dealer-installed security hardware can cross the vehicle trust boundary without being governed like an OEM security component.
Read →AnalysisAn IDPS Alert Is Not an Incident Response CapabilityDetection matters only when the organisation can translate it into an owned product decision.
Read →AnalysisThe Next Production Delay May Be Missing Cybersecurity EvidenceSupplier evidence becomes part of production resilience during a live decision.
Read →AnalysisEuro 7 Turns Emissions Compliance into a Cybersecurity Evidence ChainWhen regulatory evidence depends on sensors, ECUs, onboard monitoring and off-board data, integrity has to survive the complete chain.
Read →AnalysisThe Connected Vehicle Perimeter Includes Dealer APIsThe Kia research showed how a public identifier and an over-privileged dealer workflow could become an internet-to-vehicle control path.
Read →AnalysisEV Charging Security Is Becoming Grid ResilienceThe risk is not one compromised charger. It is coordinated control across an ecosystem that can aggregate into material grid behaviour.
Read →New evidence and decisions
Shared Bluetooth authentication in dealer-installed anti-theft systems exposes a broader automotive lesson: aftermarket components should receive only the vehicle authority their function requires.
Read →Latest analysis · 31 Aug 2026AutoHack Shows Why IDS Validation Must Follow the Real Attack PathA physically verified multi-bus CAN dataset makes one assurance gap visible: detection accuracy is useful only when it remains traceable to attack feasibility, functional consequence and response.
Read →Latest analysis · 28 Aug 2026A Trusted Automotive Update Path Can Become the Malware Delivery PathKaspersky found a multi-stage Android malware chain delivered through built-in firmware update mechanisms on automotive head units. The deeper product-security problem is what happens when legitimate update authority becomes part of the attack path.
Read →