SearchContactImprint
secunet - Your No. 1 for IT Security
PRIVATE SECTOR • Automotive • Flash Ware Protection • 

Flash Ware Protection

Mechanical components in vehicles can be subjected to tests in terms of fit and origin using optical and physical methods. In contrast, verifying the integrity and authenticity of software used in vehicles requires different mechanisms. This also applies to safeguarding the confidentiality of relevant vehicle parameters.

The danger of manipulation can be prevented by a unique identification of the communication partners. Special protective measures to secure the integrity and authenticity of the software on the basis of cryptographic verification methods also solve this problem in an efficient way.

secunet supports you in successfully implementing the corresponding software protection mechanisms so that comprehensive checks of the vehicle software increase the driving safety. In addition, the liability risks that may be incurred by non-released software in control units are reduced. In this way, our protection mechanisms also help you to enforce a "genuine parts" strategy (brand protection) for the applications of a control unit.

We assist you in successfully responding to all challenges when you implement these protection mechanisms:
  • Integration of safeguarding mechanisms in the SW release process
  • Distribution of the cryptographic keys in the tool chain in the factory and the service point
  • Compliance with legal requirements in the markets
  • Integration of third-party tool vendors and independent repair shops

Benefit from our comprehensive experience gained in many real-life projects in the area of automotive IT security.

Overview of our services:
  • Risk analyses and vulnerability assessments as well as elaboration and evaluation of implementation alternatives
  • Concepts for the definition of the required safety infrastructure as well as the security-related extensions of the processes for vehicle software programming under consideration of the following areas: development, diagnostics, production, repair shops, parts logistics and IT
  • Requirements specifications for the control units
  • Consulting services concerning network security in connection with software distribution
  • Specification and implementation of the security infrastructure (key servers) required for the generation, management and distribution of the cryptographic keys
  • Integration of the security infrastructure into existing IT environments and the corresponding technical and organisational processes
  • VPN integration support


  printprint