cybermonkey Posted February 14, 2018 Share Posted February 14, 2018 Hello, I am looking for suggestions for legitimate pen testing service providers for an embedded automotive application (black box and/or white box). Need someone that is familiar with embedded RTOS devices, UDS Services, CAN FD & Flexray scom., board level attacks, etc. My searches have yielded very few legitimate options. Process / Deliverables should include (at a minimum) Security Architecture Review, Information Gathering, Passive Analysis, Active Analysis, and a complete report. Any suggestions would be appreciated. Thanks Quote Link to comment Share on other sites More sharing options...
digininja Posted February 14, 2018 Share Posted February 14, 2018 Assuming you are based in the US, look at Black Hills Infosec and Inguardians , both have people on staff who have done work in the area. Quote Link to comment Share on other sites More sharing options...
cybermonkey Posted February 15, 2018 Author Share Posted February 15, 2018 Thanks digininja for the information. bump and refine My application is not IT, IoT, or directly connected to the interwebs. It is part of a vehicle bus and is not infotainment. I do not see any info on embedded devices on the sites that you recommended. If you have any other suggestions it would be greatly appreciated. Thanks Again Quote Link to comment Share on other sites More sharing options...
digininja Posted February 15, 2018 Share Posted February 15, 2018 Try talking to them, I'm pretty sure they both have people on staff that can help you. It it fairly specialised so maybe not the type of thing that ends up on the web site. Quote Link to comment Share on other sites More sharing options...
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.