Cybersecurity of vehicles, automotive systems, transport infrastructure or connected mobility services.

Fuel-card fraud drives stronger security and telematics controls for fleets
Commercial fuel-card fraud is prompting stronger fleet controls, including Petro-Canada’s one-time passcodes and Motive’s AI checks against vehicle location, fuel type and tank levels. Fleets are urged to monitor transactions and understand suppliers’ reimbursement policies.

US connected-vehicle rules raise technology supply-chain risks
US restrictions on connected-vehicle hardware and automated-driving software linked to China or Russia are forcing automakers to scrutinise technology provenance, ownership and supplier dependencies. Software restrictions begin for model year 2027, with hardware restrictions following from 2029 or 2030.


Zeekr explains 9X smart-feature restrictions after owner entered Kazakhstan
Zeekr said a location-triggered anti-theft mechanism restricted a 9X owner’s navigation and other smart features for more than 30 hours after he entered Kazakhstan. The vehicle was restored after cross-border travel was verified, although unlocking may need repeating in each region.


Connected fleets face rising ransomware and vehicle cyber risks
Upstream’s Yaniv Maimon outlines rising cyber risks for commercial fleets, including ransomware, digitally enabled cargo theft and vulnerabilities in connected vehicle ecosystems. He urges smaller fleets to assess resilience using the NIST Cybersecurity Framework.


US Senate panel advances bills on connected-vehicle security and staged crashes
The US Senate Commerce Committee approved a bill to block connected vehicles and related software and hardware linked to China, Russia, Iran or North Korea. Separate legislation would criminalise staged crashes involving commercial vehicles.


US Senate advances China auto bill that could affect Mercedes-Benz
The US Senate Commerce Committee advanced a bill restricting Chinese-linked vehicle technology and ownership. Mercedes-Benz could be affected because Chinese shareholders hold nearly 20% of the company; lawmakers said changes, a waiver or compliance by 2030 may apply.


OTA vehicle updates raise cybersecurity concerns after bus investigations
Analysts and transport authorities warn that over-the-air vehicle updates could expose connected systems to cyberattacks. Investigations of Yutong buses in Norway, the UK and Denmark found potential routes to battery and power controls, while US experts urged tighter security reviews and data disclosures.


Standards challenge for interoperable digital car keys
The Car Connectivity Consortium has convened industry stakeholders and has expanded testing and certification to address interoperability, security and proximity authentication requirements for smartphone-based digital vehicle keys, while adoption and consumer acceptance have remained uneven.


Privacy4Cars launches connected-vehicle digital offboarding platform
Privacy4Cars has introduced DisconnectedCar, a platform that helps fleets delete in-vehicle data, disable data-sharing settings and revoke former users’ connected-service access. The tool supports 19 automakers and aims to make digital offboarding auditable and repeatable.


Hesai Technology Blacklisted by US over Security Concerns
Hesai Technology, a Shanghai lidar manufacturer, has been blacklisted by the US Defence Department and has expanded partnerships with US firms including Nvidia. Experts have raised cybersecurity and national-security concerns about potential data access and firmware vulnerabilities.


Cohda MK6 Achieves CPOC Level 1 Approval in Europe
Cohda Wireless has passed CPOC Level 1 evaluation for its MK6 platform by TÜViT, confirming compliance with the EU security and trust framework for C-ITS and strengthening credentials for cross-border deployment.


AUTOCRYPT demonstrates CCC-compliant Digital Key test kit
AUTOCRYPT has demonstrated a CCC-compliant Digital Key self-testing toolkit in Budapest, enabling pre-production validation of digital key lifecycles and interoperability to reduce integration risk and development time for OEMs and tier suppliers.


US bars Polestar from selling new vehicles under Connected Vehicle Rule
The US Commerce Department has denied Polestar authorisation to sell new model-year 2027 vehicles in the country under its Connected Vehicle Rule, citing the brand’s links to Geely. Existing stock and customer servicing will continue.


AUTOCRYPT named Elektrobit's exclusive South Korea partner
AUTOCRYPT has become Elektrobit's exclusive business partner for software solutions in South Korea, combining AUTOCRYPT's automotive cybersecurity capabilities with Elektrobit's software-defined vehicle technologies and has announced plans to showcase joint technologies at the 2026 Automotive Innovation Day.


NMFTA highlights shared software and cybersecurity risks across ELDs
NMFTA research highlights shared software across large families of electronic logging devices, arguing that FMCSA revocations may not remove underlying compliance and cybersecurity risks from US trucking fleets.


CCC Digital Key Version 4: Interoperability and Security
The Car Connectivity Consortium has released Digital Key Version 4, has prioritised interoperability and certification, has strengthened NFC fallback testing, and has implemented rapid credential revocation and crypto agility to support long-term cross-vendor vehicle security.


University of Windsor Wins OmniAir V2X Hackathon
The University of Windsor team has won the inaugural OmniAir V2X Hackathon, which has convened student teams from multiple universities to develop and demonstrate detection and mitigation approaches for V2X misbehaviour affecting connected-vehicle systems.


End-to-End OTA V2X Misbehaviour Detection Demonstration
OmniAir consortium partners have demonstrated an end-to-end over-the-air V2X misbehaviour detection and enforcement workflow, validating standards-aligned reporting, SCMS processing and cross-vendor certificate revocation distribution across interoperable devices.


Manufacturers' Adoption of Digital Car Keys
Manufacturers have implemented digital keys across numerous models, allowing smartphones to unlock and start vehicles; availability, security technologies (UWB, BLE, NFC) and subscription requirements have varied by make, model and region.


OmniAir Plugfest demonstrates V2X tolling and security testing
OmniAir’s 2026 Maryland Plugfest featured real-world V2X testing, live tolling messages in production vehicles and validation of a misbehaviour message, highlighting progress towards interoperable connected-vehicle deployment.


GMV GNSS Cryptographic Module certified to EAL2
GMV's GNSS cryptographic module has been certified EAL2 under Common Criteria by Spain’s CCN and has been developed with security‑by‑design features for OSNMA, and the company has implemented a five‑year cybersecurity support and vulnerability‑disclosure programme.


NMFTA launches anonymous cybersecurity threat portal for trucking
NMFTA has launched a free, anonymous Threat Report Portal for trucking and transport organisations to report cyber incidents, cargo crime and suspicious activity, and access shared operational intelligence on emerging risks.


Q-Free launches Dynamic CV connected-vehicle module
Q-Free has launched Dynamic CV, a connected-vehicle software module that has enabled encrypted, authenticated edge communications for traffic controllers and has supported real-time SPaT, MAP, SSM and TIM exchanges and safety applications without central-system dependence.


AUTOCRYPT obtains WebTrust accreditation for V2X PKI
AUTOCRYPT has obtained WebTrust certification for its V2X PKI after an independent audit and has confirmed compliance with global PKI standards for certificate issuance, lifecycle management and security controls, and has indicated plans for further PKI expansion.

Zonar obtains SOC 2 Type 1 certification
Zonar has achieved SOC 2 Type 1 certification after an independent audit has verified its security controls and data‑protection practices, and has initiated pursuit of SOC 2 Type 2 for time‑based assurance.

Microlise conference survey highlights AI and cybersecurity priorities
Delegates at Microlise Transport Conference 2026 identified AI and automation as the biggest near-term influence on transport operations. Polling also highlighted fuel costs, electric-fleet infrastructure readiness, driver engagement and cybersecurity concerns across UK transport.


NMFTA to launch anonymous trucking threat-intelligence portal
NMFTA plans to launch an anonymous Threat Report Portal in June for sharing actionable intelligence on cybercrime and cargo theft across the trucking industry.


Open-source collaboration for commercial vehicle platforms
Industry participants have formed an Eclipse SDV group and have developed an open-source reference architecture to standardise non-differentiating software, address interoperability, cybersecurity and diagnostics, and have deployed a prototype on an internal test fleet.


Freight Fraud Symposium 2026 Announced
A Freight Fraud Symposium has been announced for 2026 as stakeholders have reported increased use of AI and phishing in freight fraud. Regulatory scrutiny has intensified, and the event has been planned to discuss security and policy responses.


AHEAD project develops AI tools for resilient EV charging grids
The AHEAD project is developing AI and spatial-modelling tools to plan EV charging infrastructure, manage grid impacts and unlock smart and bidirectional charging. European demonstrators will validate flexibility services, interoperability and cybersecurity measures across varied real-world environments.


Bipartisan bill would bar certain Chinese connected vehicles
Michigan lawmakers have introduced a bipartisan bill to ban Chinese-made connected vehicles, software and hardware from the US, citing national-security and data concerns, and have set phased compliance dates mirroring earlier Senate proposals.


Valladolid hosts connected and cybersecure urban circuit
Valladolid has become an open-air cybersecurity laboratory under a 3.5 million euro RETECH scheme integrating V2X, 5G and edge computing; GMV has delivered V2X and cybersecurity systems, and the project has been funded by Next Generation and regional sources.


AUTOCRYPT shortlisted for AutoTech 2026 Cybersecurity Award
AUTOCRYPT has been shortlisted for the 2026 AutoTech Cybersecurity Excellence Award for its Automotive KMI solution, which has been recognised for scalable key and certificate lifecycle management across OEMs, suppliers and partner ecosystems.


Q-Free publishes SOC 3 cybersecurity report
Q-Free has made its SOC 3 cybersecurity report publicly available, following its 2023 SOC 2 Type 2 attestation. The report has been published to provide wider assurance of the company’s security, availability and confidentiality controls.


Geely unveils purpose-built electric robotaxi prototype in China
Geely has unveiled the EVA Cab, an electric purpose-built robotaxi prototype featuring L4 autonomous-driving software, digital LiDAR, high-performance AI computing and vehicle-cloud cybersecurity. A CaoCao Mobility version is planned for large-scale commercialisation in 2027.


Decision-pipeline cybersecurity for mobility systems
Researchers have reframed mobility cybersecurity around decision pipelines, identifying reasoning integrity as a new attack surface and demonstrating CHAI attacks that have manipulated embodied AI via semantically crafted physical inputs, and have prompted calls for continuous, lifecycle-based defences.


Vector adds security module to CANoe EV test package
Vector has expanded its CANoe Test Package EV with a security testing extension that has provided V2G and TLS fuzzing, has supported ISO 15118-2 and -20, and has been engineered for automated, reproducible execution and CI/CD integration.


WirelessCar event highlights software-defined vehicles, AI and cybersecurity
WirelessCar’s Dev:Radar 2026 event in Gothenburg examined software- and AI-defined vehicles, AI-assisted engineering and cybersecurity-by-design, highlighting how software and security practices are reshaping connected mobility development.


Geotab report warns of rising cyber-enabled cargo theft risks
Geotab’s 2026 report, based on surveys of US fleet operators and consumers, finds cargo theft increasingly involves GPS spoofing, stolen credentials and AI-powered fraud. It highlights rising theft values, driver pressures and the need for connected security measures.


GMV joins ES-ISAC Automoción for automotive cybersecurity
GMV has become a member of ES-ISAC Automoción through the Castilla y León Automotive and Mobility Cluster (FACYL) and has joined Spain’s collaborative automotive cybersecurity forum, which has been established to share intelligence and strengthen industry cyber resilience.


Xiid and eVerged partner on EV charging cybersecurity
Xiid and eVerged have announced a partnership to bolster EV charging cybersecurity, using Xiid’s Terniion platform and SealedTunnel technology to protect charging stations, billing systems and data transport across distributed networks for operators, municipalities, fleets and utilities.


OSNMA and Smart Tachograph Data Integrity
OSNMA has enhanced GNSS authentication for Smart Tachograph 2, has reduced spoofing risk, has improved record reliability for fleet operators and regulators, and has left drivers' day-to-day experience unchanged.


Renesas launches 28 nm automotive MCU for ASIL D and zonal architectures
Renesas has launched the 28 nm RH850/U2C automotive MCU for chassis, safety, battery-management and motor-control applications. The device supports ASIL D, cybersecurity requirements and interfaces including automotive Ethernet, CAN-XL and I3C to support migration to zonal vehicle architectures.


Renesas launches 28 nm automotive MCU for ASIL D vehicle systems
Renesas has launched the 28 nm RH850/U2C automotive MCU for chassis, safety, battery-management and motor-control applications. It supports zonal architectures, multiple automotive networking interfaces, ASIL D functional safety and ISO/SAE 21434 cybersecurity requirements.


Hyundai highlights V2G safety risks and continues ISO 15118-20 testing
Hyundai says current vehicle-to-grid equipment can create safety, reliability and interoperability risks by bypassing approved communication protocols. It is testing vehicles and bidirectional chargers in Australia and urging future trials to use ISO 15118-20 and formal validation frameworks.


ZF modular drivelines and control systems for construction
ZF has presented modular eTRAC drivelines, transmission and gearbox innovations, and the EC5 drive-control unit, and has expanded aftermarket services, aiming to support electrification, alternative fuels and higher torque density in construction and mining applications.



