Le Lézard
Classified in: Transportation, Science and technology
Subject: PDT

NYU Tandon Joins Top Open-Source Initiative for Automotive Software and Cybersecurity


BROOKLYN, N.Y., Aug. 16, 2018 /PRNewswire/ -- Automobiles, like laptops, can be hacked by malefactors seeking to remotely steal information, damage or hijack a vehicle, or even injure or kill its occupants. One means of incursion is to target over-the-air (OTA) software upgrades for on-board telematics systems or the electronic control units (ECU) for brakes, the engine, air bags and more. The risk of such attacks will only increase, as analysts predict that by 2022, 203 million OTA-enabled cars will roll into dealerships.

Open-source systems, which improve through open security reviews, are an increasingly popular approach to securing OTA updates via Wi-Fi or cellular connections that eliminate the need for drivers to return to dealerships for upgrades.

One such framework, Uptane, developed by researchers at the NYU Tandon School of Engineering, is part of the OTA cybersecurity toolkit for a growing number of automakers and suppliers. Because of this, as well as the increasing collaboration with Automotive Grade Linux (AGL), NYU Tandon has joined The Linux Foundation and Automotive Grade Linux (AGL) as an Associate Member.

Uptane, a universal, free, and open-source framework to protect wireless software updates in vehicles, has gained a foothold with automakers and suppliers alike since its 2017 introduction as a joint research initiative in consultation with government regulators, and industry.

The AGL project has over 120 members and is on track to be the leading shared software platform across the industry for in-vehicle applications including infotainment, instrument cluster, heads-up-display (HUD), telematics, autonomous driving, safety, and advanced driver assistance.

Developed by Justin Cappos, professor of computer science and engineering at NYU Tandon, along with industry, academic and government collaborators, Uptane is helping to secure the OTA software updates for vehicles manufactured by one of the three major U.S. automakers, and is available to many others, including AGL members.

Based upon Cappos' widely-used TUF (The Update Framework), and developed with funding by the U.S. Department of Homeland Security, Uptane can prevent attacks during software updates by storing the correct encryption keys with the automaker, offline. It allows automakers and suppliers not only to secure major software updates to automotive infotainment and telematics units, it also makes possible remote, inexpensive updates to the "edge" ? the dozens of in-vehicle ECUs controlling numerous functions in today's vehicles. It also supports deployment of secure fixes for vulnerabilities exploited in an attack and allows automakers to completely control critical software and share that control when appropriate.

"Uptane helps Linux secure updates at places where Linux can't run, since many ECUs, such as brake controllers, have tiny Flash memories. While we are essentially an encryption algorithm independent of Linux, we are part of Linux' high-end expansion out to smaller devices," said Cappos.

The platform's code is posted on Github for anyone to see, test, or use. When the NYU Tandon team unveiled Uptane last year, they did so with a challenge to security experts everywhere to try to find vulnerabilities before its adoption by the automotive industry. According to Cappos, the effort led to clarifications with Uptane's reference implementation.

"We are a good example of the tools Linux is encouraging," said Cappos. "Since we are collaborating closely with AGL, it makes sense for NYU Tandon to be a member of the Linux Foundation. We think it's the right way to move forward and we are proud to be working with AGL and Linux Foundation."

NYU Tandon's membership in AGL gives students opportunities for a full range of technical training classes, including basic and embedded Linux, device drivers and kernel internals, and Linux system and network administration; as well as hot topics like Kubernetes and blockchain.

Dan Cauchy, Executive Director of Automotive Grade Linux, The Linux Foundation, said, "We are excited to welcome NYU Tandon School of Engineering to The Linux Foundation and Automotive Grade Linux. We are thankful for the opportunity to collaborate with the Uptane community and look forward to further leveraging the capabilities of the platform to improve the security of connected vehicles."

"The NYU Tandon School of Engineering is proud to join the Automotive Grade Linux community, whose members share the deeply held belief of our Uptane researchers that the free and open exchange of knowledge will strengthen our transportation system and protect all drivers and their passengers," said NYU Tandon Dean Katipalli Streenivasan. "Our school and the University-wide Center for Cybersecurity look forward to productive collaborations that will benefit our mobile society."

About the New York University Tandon School of Engineering
The NYU Tandon School of Engineering dates to 1854, the founding date for both the New York University School of Civil Engineering and Architecture and the Brooklyn Collegiate and Polytechnic Institute (widely known as Brooklyn Poly). A January 2014 merger created a comprehensive school of education and research in engineering and applied sciences, rooted in a tradition of invention and entrepreneurship and dedicated to furthering technology in service to society. In addition to its main location in Brooklyn, NYU Tandon collaborates with other schools within NYU, one of the country's foremost private research universities, and is closely connected to engineering programs at NYU Abu Dhabi and NYU Shanghai. It operates Future Labs focused on start-up businesses in downtown Manhattan and Brooklyn and an award-winning online graduate program. For more information, visit http://engineering.nyu.edu.

www.facebook.com/nyutandon

@NYUTandon 

SOURCE NYU Tandon School of Engineering


These press releases may also interest you

at 22:32
The report titled "Central Lab Market by Service Type (Anatomic Pathology/Histology, Biomarker Services, Genetic Services), Phase (Phase 1, Phase 2, Phase 3), Therapeutic Area, End-use - Global Forecast 2024-2030" is now available on...

at 22:18
The report titled "Personalized Nutrition Market by Measurement Type (Active Measurement, Standard Measurement), Application (Indication-based, Standard Supplements), Distribution Channel, End-Use - Global Forecast 2024-2030" is now available on...

at 21:51
On March 19, DMEGC Solar received the Acknowledgement of Manufacturer's Laboratory Competence issued by TÜV Rheinland, a global certification agency, proving its excellence in PV module R&D and quality control. The acknowledgement is TÜV Rheinland's...

at 21:45
Shop TJC Ltd. (TJC) is thrilled to announce the successful completion of its third collaboration with the iconic BBC...

at 21:32
Arctech has recently signed a contract for the 500MW Manah I power plant project in Oman, following its successful bid for the 588MW Manah II PV project in Oman earlier in 2023. This consecutive project win showcases Arctech's customized solutions...

at 21:15
Techtouch, Inc. (Headquarter: Tokyo, Japan, President/CEO: Naka Imuta) announced today that it ranked 8th in the 21st Technology Fast 50 Japan, with three-year revenue growth of 468.6%. Technology Fast 50 Japan, held annually by Deloitte Tohmatsu...



News published on and distributed by: