Cactus Ransomware Group Claims Responsibility for Cyberattack on CIE Automotive
January 12, 2024A recent ransomware attack on an automotive supplier is a stark reminder of the frequent and varied cyberthreats that industries face, especially those utilizing internet technologies. In this article, we explore typical scenarios in industries reliant on internet technologies and highlight the unique vulnerabilities and challenges that the automotive industry faces amid the rising tide of cyberattacks.
VicOneFrom Information Leakage to Command Injection: Common Vulnerabilities in the Automotive Industry
December 22, 2023We highlight common vulnerabilities affecting modern connected vehicles, including those involving denial of service, hard-coded credentials, and stack overflow.
CyberThreat Research LabDriving Into the Future: VicOne Automotive Cybersecurity Predictions and Recommendations for 2024
December 15, 2023We recently explored the current state of automotive cybersecurity in the VicOne Automotive Cyberthreat Landscape Report 2023. In this blog entry, we present the automotive cybersecurity predictions and recommendations that decisions-makers in the automotive industry should be cognizant of in 2024.
CyberThreat Research LabSafeguarding Tomorrow’s Mobility: The Imperative of Cybersecurity in the Automotive Industry
December 7, 2023In the fast-paced evolution of the automotive industry, technological innovation has become synonymous with progress. However, this era of transformation also demands an unwavering commitment to robust cybersecurity measures.
CyberThreat Research LabBeating Zero-Day Vulnerabilities at a Game: Pwn2Own Automotive
December 6, 2023Pwn2Own Automotive specifically focuses on the increasing cyberthreats to connected cars worldwide, addressing a critical area of modern automotive security. It is the first global competition dedicated to discovering and solving connected car technology vulnerabilities.
CyberThreat Research LabThe Cybersecurity Terrain of 2023: A Review of the Automotive Threat Landscape
December 5, 2023In our annual automotive cybersecurity report, we review the past year to see how far the industry has come in its compliance journey, what challenges it has been facing, and where it can expect to find itself amid the threat landscape ahead.
VicOneBig Brother Is in Your Passenger Seat: The Privacy Risks of Modern Connected Cars
November 15, 2023How much does your car know about you? Our study highlights the need to look into how we can protect the large amount of data that cars now produce and use — before threats to privacy and security become serious problems.
VicOneTesla Jailbreak Unlocks Features via Firmware Patching and Voltage Glitching
September 12, 2023Researchers from the Technical University of Berlin recently unveiled a hardware-based attack designed to jailbreak Tesla’s AMD-based in-vehicle infotainment (IVI) system. In this blog entry, we delve into the methodology of the attack and explore its implications for automotive cybersecurity.
CyberThreat Research LabUnleashing the Charge: Safeguarding the Electromobility Era From Cybersecurity Storms
September 1, 2023Malicious actors could exploit vulnerabilities in the charging infrastructure used by electric vehicles (EVs) to carry out cyberattacks on EV charging systems, which could lead to reputational damage and service outages. As EVs become more popular as a sustainable transportation alternative, the need for secure EV charging systems becomes of greater importance.
VicOneThe SBOM Edge: How to Strengthen Software Security in Connected Cars
August 17, 2023This second installment in a two-part series of articles focuses on how organizations can optimize the advantages of implementing a software bill of materials (SBOM) to bolster software security in connected cars.
VicOneThe Power of the SBOM: Unlocking Software Supply Chain Security in the Connected Car Ecosystem
August 15, 2023This article is the first installment of a two-part series that discusses how important implementing a software bill of materials (SBOM) is for connected car stakeholders aiming to strengthen their cybersecurity stance.
VicOneDissecting the Zenbleed AMD Vulnerability and Its Potential Impact on the Automotive Industry
August 14, 2023A critical vulnerability affecting AMD Zen 2 CPUs, Zenbleed could allow a register to not be written to zero correctly, potentially leading to the leakage of data, passwords, and other sensitive information. Its successful exploitation could have repercussions for the automotive industry.
CyberThreat Research Lab