The challenge: Comprehensively and efficiently testing the cyber-security of embedded systems
New interfaces and networked interconnections (e.g. IoT products or smart meters) make IT security an important quality feature of embedded systems. Unlike classic safety tests, security problems here are unexpected and hard to foresee. They are exploited by unpredictable attackers, who are intelligent in their work. A systematic approach is necessary in order to obtain a comprehensive and meaningful assessment of IT security within a limited testing period. Due to the special nature of embedded systems, traditional IT testing tools and methods cannot be applied to them, as they do not cover many more specific security aspects.
The solution: Methodical and technical expertise
Participants will learn how to efficiently track various types of security problems on both conceptual and implementation levels. Up-to-date, practically-tested research methods and procedures for analyzing embedded systems are clearly demonstrated in hands-on training. The practical examples are carefully selected to provide participants with a comprehensive view of all the important aspects and concepts. The scope of topics ranges from circuit-board analysis to attacks at semiconductors and bus level, crypto-chip security, fuzzing, binary analysis, and the analysis of protocols for wireless interfaces.