Training
Security training from people who hack for a living.
Practical courses for engineers and developers: automotive hacking with real ECUs and more than 30 capture-the-flag challenges, secure coding on real code, and compliance know-how. For beginners and experienced professionals, as public courses or in-house.
Courses
Course catalogue
Every course is hands-on: real ECUs, real code, real exploits. Open a course for the full agenda.
4 days
Full Course
The complete automotive security training, from vehicle networks and diagnostic protocols to firmware reverse engineering and RF hacking. Everything in one intensive 4-day program.
- Vehicle networks: CAN, CAN FD, LIN, FlexRay, Ethernet
- Diagnostic protocols: UDS, CCP/XCP, DoIP
- Firmware reverse engineering with Ghidra
- RF hacking: TPMS, keyfobs, EV charging
2 days
Fundamentals
Vehicle networks, diagnostic protocols, and hands-on hardware attacks. Learn CAN, CAN FD, LIN, FlexRay, and Automotive Ethernet standards using real ECUs and open-source tools.
- CAN/CAN FD/LIN/FlexRay/Ethernet standards
- Hardware attacks and mitigation strategies
- OBD-II, KWP2000, UDS protocol deep-dive
- Message spoofing and checksum algorithms
2 days
Advanced Testing
Firmware extraction, reverse engineering, and exploitation techniques. Hands-on exercises with real automotive ECUs from major manufacturers, including 30+ CTF challenges.
- Microcontroller architectures and debug probes
- Firmware extraction and protection mechanisms
- Security access algorithm reverse engineering
- CCP/XCP calibration protocol exploitation
1 day
RF Hacking
RF hacking with Software Defined Radio targeting automotive wireless systems. Learn to analyze TPMS, keyfob protocols, and EV charging station communications.
- Tire Pressure Monitoring System (TPMS) analysis
- Keyfob attack techniques and relay attacks
- FM radio attack surfaces (RDS, HD Radio, DAB+)
- EV charging station powerline communication
1 day
ISO 21434 Compliance
Understand the ISO/SAE 21434 standard and how to build a cybersecurity management system. Learn to conduct threat analysis, risk assessment, and produce verification evidence.
- ISO/SAE 21434 framework and requirements
- Threat Analysis and Risk Assessment (TARA)
- Cybersecurity verification and validation
- Integrating security into the V-model lifecycle
2 days
Secure Coding
Hands-on secure coding for developers, tailored to your stack: vulnerability classes, secure C/C++ for embedded systems, web and API security, and code review practice.
- Memory safety in C/C++
- Input validation and injection
- Cryptography and secrets handling
- Secure code review practice
Get started
Plan your team training in 15 minutes
Tell us who should be trained and on what. We suggest the right course and format.
- Course content matched to your team’s level
- In-house or remote, in English or German
- Dates and quote after the call

Your call is withTom ZaubermannFounder & CEO, Zyberum
Or send us a message
We reply within one business day.