Skip to main content

US DOT issues federal guidance for improving motor vehicle cyber security

The US Department of Transportation's National Highway Traffic Safety Administration (NHTSA) is taking a proactive safety approach to protect vehicles from malicious cyber-attacks and unauthorised access by releasing proposed guidance for improving motor vehicle cyber security. The proposed cyber security guidance focuses on layered solutions to ensure vehicle systems are designed to take appropriate and safe actions, even when an attack is successful. The guidance recommends risk-based prioritised ident
October 25, 2016 Read time: 2 mins
The 324 US Department of Transportation's National Highway Traffic Safety Administration (NHTSA) is taking a proactive safety approach to protect vehicles from malicious cyber-attacks and unauthorised access by releasing proposed guidance for improving motor vehicle cyber security.

The proposed cyber security guidance focuses on layered solutions to ensure vehicle systems are designed to take appropriate and safe actions, even when an attack is successful. The guidance recommends risk-based prioritised identification and protection of critical vehicle controls and consumers' personal data. Further, it recommends that companies should consider the full life-cycle of their vehicles and facilitate rapid response and recovery from cyber security incidents.

This guidance also highlights the importance of making cyber security a top leadership priority for the automotive industry, and suggests that companies should demonstrate it by allocating appropriate and dedicated resources, and enabling seamless and direct communication channels though organisational ranks related to vehicle cyber security matters.

"Cyber security is a safety issue, and a top priority at the Department," said US Transportation Secretary Anthony Foxx. "Our intention with today's guidance is to provide best practices to help protect against breaches and other security failures that can put motor vehicle safety."

"In the constantly changing environment of technology and cyber security, no single or static approach is sufficient," said NHTSA Administrator Dr Mark Rosekind. "Everyone involved must keep moving, adapting, and improving to stay ahead of the bad guys."

In addition to product development, the guidance suggests best practices for researching, investigating, testing and validating cyber security measures, NHTSA recommends the industry self-audit and consider vulnerabilities and exploits that may impact their entire supply-chain of operations. The safety agency also recommends employee training to educate the entire automotive workforce on new cyber security practices and to share lessons learned with others.

For more information on companies in this article

Related Content

  • Principles for a connected vehicle environment
    May 8, 2012
    The US DoT Intelligent Transportation Systems Joint Program Office (ITS JPO) has published a discussion document - Principles for a Connected Vehicle Environment. This document expresses a set of working principles intended to guide US DoT's research, demonstration and implementation activities related to a connected vehicle environment. Connected vehicles refer to the ability of vehicles of all types to communicate wirelessly with other vehicles and roadway equipment, such as traffic signals, to support
  • Karamba’s Carwall thwarts mass hacks
    September 13, 2016
    Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving. Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation. David Barzilai, the company’s chairman and co-founder, said with tens of millions of l
  • Federal Signal supplies all the elements of end to end tolling
    January 31, 2012
    Manfred Rietsch, group president of Federal Signal Technologies (FST), talks about the recent acquisitions forming FST and the organisation's plans for the future. "Our philosophy is going to be about open access" Federal Signal has been on a buying spree. An energetic policy of acquisition over the past few months has seen the company reposition itself as an end-to-end provider of Electronic Toll Collection (ETC) systems with what it states is a portfolio of proven, best-in-class technologies which will al
  • Potholes and road safety a bigger priority for future government, says survey
    April 10, 2015
    The next government must make road safety a top priority, with more than 50 per cent of motorists believing the current administration had not made the issue enough of a concern, according to a survey conducted by the Institute of Advanced Motorists (IAM). A total of 2,156 people took part in the IAM survey throughout March 2015. The number one gripe amongst those who answered the poll said reducing the number of potholes should be the government’s number one action point, with 70 per cent of respondents