As an expert lab in embedded systems security evaluations and penetration testing, we support the automotive industry evaluating components and systems resilience against state-of-the-art cybersecurity attacks, at a hardware, software, communications and cryptographic level.
Modern vehicles are complex networks of IT components interconnected via wired and wireless interfaces such as CAN, LIN and Automotive Ethernet. Also, new vehicle generations can connect externally to telematics services, EV charging networks, and intelligent driving platforms, making them vulnerable to sophisticated cyber threats.
To address these risks, vehicle manufacturers must comply with evolving regulations and standards for managing cybersecurity in road vehicles. As the primary developers of cybersecurity-critical components, Tier 1 suppliers play a pivotal role in ensuring the safety and resilience of the automotive ecosystem.
Currently, UNECE R155 and R156, together with new local Chinese regulations GB44495 and GB44496 and the RED Directive in Europe, stand for the current state of the art on regulations that OEMs navigate to define cybersecurity requirements.
In order to demonstrate components’ resilience against state-of-the-art attacks, OEMs and Tier 1 manufacturers can turn to specialized security laboratories to evaluate their products.
Applus+ IT labs have a strong record of accomplishments evaluating embedded components’ security at hardware, software, communications, and cryptographic level. We have expertise with the complete OSI stack, from system boot to intersystem communications. This bird’s eye view allows us to assess complex systems with a high level of assurance.
Our team of cybersecurity experts and experienced auditors offers Certification of Conformity services for the following applicable international standards:
The service includes the following activities and deliverables:
Security evaluations encompass penetration testing activities for automotive electric/electronic components. We customize the evaluation effort to align precisely with your desired scope and requirements.
Target for these kind of evaluation includes a wide range of target components such as:
The main activities that we perform in our security evaluations are:
Open cybersecurity training and courses aimed at roles like system engineers, cybersecurity managers or software architects. Some examples of our training:
Note: Because Applus+ Laboratories is accredited as a third-party laboratory by several evaluation and certification schemes, and in order to guarantee its impartiality, Applus+ engineers are never involved in actual product development or solutions implementation.
Applus+ uses first-party and third-party cookies for analytical purposes and to show you personalized advertising based on a profile drawn up based on your browsing habits (eg. visited websites). You can accept all cookies by pressing the "Accept" button or configure or reject their use. Consult our Cookies Policy for more information.
They allow the operation of the website, loading media content and its security. See the cookies we store in our Cookies Policy.
They allow us to know how you interact with the website, the number of visits in the different sections and to create statistics to improve our business practices. See the cookies we store in our Cookies Policy.