Skip to content

How Continental leveraged fuzz testing and ASPICE for cybersecurity to comply with ISO 21434

TRUSTED BY
google-2015-3Deutsche_Telekom_2022 1-3bosch-logo-simple 1-2Secunet_Security_Networks_Logo-2Continental_AG_logo 1-2Cariad_Logo-2ETAS-Logo-2

About the webinar

Continental integrated instrumented fuzz testing into the development process and reached compliance with ISO/SAE 21434, Regulation (EU) 2019/2144, UN R155, and ASPICE for cybersecurity. 

Watch the webinar to learn how Continental built an automated security testing process as part of scalable CI/CD infrastructure by applying fuzzing at the Software-in-the-Loop level (SiL). 

Webinar - Continental and Fuzz Testing

 

Inside, you'll discover:

  • How fuzz testing contributes to ISO 21434 compliance.
  • The specifics of cybersecurity validation and verification requirements.
  • How suppliers and OEMs comply with ISO.
  • The benefits of source code fuzz testing, aka white-box fuzzing.
 
mockup-white-paper-iso-fuzz-testing-small

Key topics and takeaways

  • Discover how Continental complies with ASPICE for cybersecurity and gets faster feedback cycles using Software-in-the-Loop
  • Gain insights into leveraging design documentation for testing security-critical components
  • Explore practical examples of fuzz testing’s efficacy and pitfalls in:
    • Application Software (App-SW) running on ClassicAutoSAR
    • Hardware Security Module (HSM) Firmware
    • Flash Bootloader Software (FBL-SW)

Speakers

Eckart Heyne

 

Eckart Heyne

Product Cybersecurity and Privacy Officer, Continental

Michael von Wenckstern 2024

 

Michael Von Wenckstern

Product Cybersecurity Governance, Risk and Compliance Specialist, Continental

sergej-dechand-cropped

 

Sergej Dechand

CEO / Co-Founder, Code Intelligence


Watch the webinar


How instrumented fuzz testing works

Watch the demo to see how Code Intelligence’s instrumented fuzz testing, which is used by Continental UX, works. 

Sergej Dechand, Code Intelligence's CEO, demonstrates how developers can submit new code, which is automatically tested and analyzed for security issues.