This blog is part of a series on the monetization of connected vehicles through cloud-based agentless cybersecurity tools, written by Ric Vicari, Upstream’s UK-based VP…
Category: Cybersecurity
Cybersecurity for Connected Vehicles: From Cost Centre to Value Centre (Part 1)
This blog is part of a series on the monetization of connected vehicles through cloud-based agentless cybersecurity tools, written by Ric Vicari, Upstream’s UK-based VP…
Keeping Commercial Vehicles Rolling Amidst Climbing Cyber Threats
Today’s rising cybersecurity threats are not enough to break the will of the most advanced fleets- but they are enough to impact logistics. The last…
90 Days with Upstream: From “Project Beacon” to “Data-driven Cybersecurity”
Having just completed my first 90 days in the cybersecurity domain, I feel it’s important to share a few reflections on market opportunities and risks…
Right to Repair and Its Alarming Cybersecurity Risks
Right to repair isn’t a new topic but it’s growing in momentum. In the last decade, it’s proven to be an impasse large between manufacturers…
Are Automotive OEMs as Secure as They Think?
With new cybersecurity regulations and standards coming into effect, such as UNECE WP.29 R155 & R156 and ISO/SAE 21434, automotive OEMs are feeling pressure from…
Preparing the Automotive Industry to Face Threats Head On
For four consecutive years, Upstream’s analysts have compiled a Global Automotive Cybersecurity Report to inform all stakeholders of threats in the rapidly digitizing automotive industry.…
Protecting Vehicles and Automotive Servers from log4shell
Four days ago, the cybersecurity world was introduced to Log4Shell — one of the most profound vulnerabilities of 2021. We at Upstream were prepared for…
BadAlloc Might Pose Risk to More Than One Hundred Million Vehicles
We are constantly monitoring cyber incidents in the mobility landscape as part of our commitment to make mobility more safe and secure for everyone. With…
Understanding the UNECE WP.29 Cybersecurity Regulation (CSMS)
On June 25, 2020, after roughly two years of preparations and revisions, the United Nations formally adopted two new regulations on automotive cybersecurity 1. Automotive regulations…
Complying with NHTSA’s new order for crash reporting
In the last few years, progress has been made in autonomous driving technology for consumer and commercial vehicles. The Society of Automotive Engineers (SAE) classifies…
Warning: This car may contain vulnerable Software or Hardware
In many industries, there is growing demand for transparency in product processes and content. Companies are increasingly asked to detail the composition of their products…
What Does a Magical God of Death Have to Do With Automotive Cybersecurity?
In a humorous play-on-words, CVE-2021-3156, nicknamed “Baron Samedit” by the researchers who discovered the vulnerability, paid homage to the folklore death god “Baron Samedi” and…
ISO/SAE 21434: Setting the Standard for Automotive Cybersecurity
Understanding the ISO/SAE 21434 draft standard and Upstream Security’s solutions for effective compliance in the realm of automotive cybersecurity. Why was this automotive cybersecurity standard needed? As…
How to Protect Against Telematics Server Attacks
Misconfigured reporting server gave hackers direct access to sensitive data In May 2018, a bug led to a major security threat affecting CalAmp, a telematics…