Skip to content
Zyberum Cyber Security Firm
Menu

Product · AutoST

Automotive Security Testing, automated.

AutoST is an automated security testing suite for in-car ECUs. It fuzzes, attacks and scans your ECUs over their real interfaces and turns the results into evidence for WP.29 (UN R155) and ISO/SAE 21434.

In short

AutoST is Zyberum’s automated security testing software for automotive ECUs. It runs fuzz tests, security tests and vulnerability scans over UDS, CAN/CAN FD, DoIP, SOME/IP and other interfaces, and documents results for ISO/SAE 21434 verification and UN R155 type approval.

Interfaces

Supported interfaces & protocols

Test engines

Three engines, one platform

Each security test engine performs a different kind of automated test.

Fuzz testing

Sends invalid, unexpected or random data to the ECU to trigger crashes, hangs and memory corruption, with crash and anomaly detection.

Security testing

Applies real attack techniques against secure boot, firmware update, protocols, hardware interfaces, file system and security mechanisms.

Vulnerability scanning

Scans for and verifies known embedded vulnerabilities, including DID and routine discovery driven by ODX/CDD databases.

Built for engineering teams

From ad-hoc testing to repeatable evidence

Manual pentests find deep issues, but they are snapshots. AutoST makes security testing repeatable: run the same campaigns on every software release, on your bench, HIL rig or in CI, and see regressions immediately.

Results are stored per ECU and session with full traceability, ready to be referenced in your ISO/SAE 21434 cybersecurity case and UN R155 documentation.

  • Works with common CAN interfaces (Vector, PEAK, Kvaser, SocketCAN)
  • On-premise deployment, so your data never leaves your network
  • Reports for engineers and auditors
  • Backed by Zyberum’s pentest team

FAQ

AutoST FAQ

Which ECUs can AutoST test?

Any ECU reachable via UDS over CAN/CAN FD or DoIP, SOME/IP services, and further interfaces such as USB, Bluetooth and Wi-Fi. It works with bench setups, HIL rigs and complete vehicles.

Does AutoST replace a penetration test?

No, it complements it. AutoST automates repeatable tests and regression checks; our pentesters go deeper with manual research. Many customers combine both.

Is AutoST cloud-based?

No. AutoST is deployed on-premise, so test data and firmware stay in your network.

Get started

See AutoST live

In a one-hour live demo we show fuzzing, security tests and vulnerability scanning, and discuss how AutoST fits your test bench.

  • A live product demo, not slides
  • Your interfaces and protocols discussed
  • Licensing and pilot options explained
Tom Zaubermann

Your call is withTom ZaubermannFounder & CEO, Zyberum

Call us: +49 176 439 17074automotive@zyberum.com

Or send us a message

We reply within one business day.

Call usBook a live demo

Pick a time that suits you

Open in a new tab