Practical Automotive Security Testing

IT security analyses in the automotive field

Fahrzeugkommunikation, IT-Sicherheitsrisiken, Kryptographische Grundlagen,  Präsenzseminar

The challenge: Testing the cyber-security of electronic control devices comprehensively and efficiently

Carrying out IT security analyses of vehicle systems poses completely new challenges for developers and testers. Unlike classic safety tests, security problems here are unexpected and hard to foresee. They are exploited by unpredictable and intelligent attackers. A systematic approach is necessary in order to obtain a comprehensive and meaningful assessment of IT security within a limited testing period. But even experienced security experts from the IT field must be familiar with new methods and approaches to be able to carry out practical tests of vehicle electronics efficiently.

The solution: Methodical and technical know-how

In this seminar, you will learn how to efficiently track various types of security problems at conceptual and implementation levels. Up-to-date, field-tested research methods and procedures for analyzing ve-hicle electronics are clearly demonstrated in hands-on training. These practical examples are selected such that they provide a comprehensive view of all the important aspects and concepts. The scope of topics ranges from the analysis of the circuit board to attacks on the level of semiconductors and buses, crypto chip security, CAN firewalls, UDS fuzzing, binary analysis, and the analysis of protocols for wireless interfaces.

How you can benefit: at a glance

After the seminar, you will be able to...

... carry out IT security analyses for electronic vehicle systems.
... precisely track various kinds of security problems.
... appropriately assess research results.

 

This seminar will provide you with...

.. current and advanced analysis techniques such as binary analysis and side-channel attacks.
... first-hand practical knowledge through training and demonstration of various research methods.

Information Overview

Duration 1.5 days in class
Learning objectives In addition to an efficient, systematic approach from requirement analysis to final assessment, you will also learn the latest practical techniques for analyzing security-relevant software, hardware components and protocols in modern vehicles.
Target group – Developers in the automotive industry, who plan or execute IT security analyses
– Security experts from the IT field, who carry out practical tests on vehicle electronics
Requirements Good understanding of technical systems, ideally, in the field of vehicle electronics or embedded systems
Organized by Fraunhofer SIT
Cost € 900

Download our flyer for more information.

– Analysis techniques with practical examples from the fields of application
   - PCB analysis
   - Cryptographic procedures and protocols
   - Fuzzing (CAN bus, UDS)
   - Wireless interfaces
   - Reading and analysis of firmware
   - Side-channel analysis
– Documentation and assessment of weaknesses
– Analysis at the concept and implementation level, effective approach to security analyses
– Special features of automotive tests

Jan Steffan, Christian Brandt, Dr. Andreas Follner, Norman Lahr, Dr. Roland Rieke

Cyber-Physical Systems Security specialists at the Fraunhofer Institute for Secure Information Technology (SIT)