Skip to main content
Sister Publication Links
  • Automotive News
  • Automotive News Europe
  • Automotive News China
  • Automobilwoche
Subscribe
  • Subscribe
  • login
  • HOME
  • News
    • News by Brand
    • Auto Shows
    • Canadians Abroad
    • Photo Galleries
    • Automakers
    • Suppliers
    • Retail
    • Dealer Best Practices
    • Government Relations
    • Trade and Tariffs
    • Technology
    • Labour
    • Aston Martin
    • BMW
      • Mini
      • Rolls Royce
    • Daimler
      • Mercedes Benz
      • Smart
    • Ferrari
    • Ford
      • Lincoln
    • General Motors
      • Buick
      • Cadillac
      • Chevrolet
      • GMC
    • Honda
      • Acura
    • Hyundai
      • Kia
    • Mazda
    • Mitsubishi
    • Nissan
      • Infiniti
    • Stellantis
      • Alfa Romeo
      • Chrysler
      • Dodge
      • Fiat Chrysler
      • Jeep
      • Fiat
      • Lancia
      • Maserati
      • Ram
    • Subaru
    • Tata
      • Jaguar
      • Land Rover
    • Tesla
    • Toyota
      • Lexus
    • Volkswagen
      • Audi
      • Bentley
      • Bugatti
      • Lamborghini
      • Porsche
    • Volvo
    • VinFast
    • Toronto Auto Show
  • Opinion
    • Blogs
  • Video
  • Podcasts
  • EVENTS & AWARDS
    • 2022 Auto News Canada All-Stars
    • 2022 Canadians To Watch
    • 2022 Diversity Champions
    • Best Dealerships To Work For
    • Canada Congress
    • Retail Forum: Dealer Discussions
    • Leading Women Roundtables
    • Embracing Diversity Roundtable
    • EVs Decoded
  • Jobs & Classifieds
  • +MORE
    • IN THE DRIVER'S SEAT
    • NEWSLETTERS
    • SUBSCRIBE
    • CLASSIFIEDS
    • PEOPLE ON THE MOVE
    • COMPANIES ON THE MOVE
    • WEBINARS
    • ADVERTISE WITH US
    • CONTACT US
    • DIGITAL EDITION
    • PUBLISHING PARTNERS
MENU
Breadcrumb
  1. Home
  2. Technology
February 06, 2023 07:36 AM

How Canada's Cybeats Technologies catalogues code that makes up auto software

'For every single device that runs on software, there will be a list of ingredients,' says Cybeats chief technology officer

David Kennedy
  • Tweet
  • Share
  • Share
  • Email
  • More
    Print
    Project Arrow in Vegas
    APMA/LINKEDIN

    All the millions of lines of code in the software that powers the Project Arrow concept can be traced to their origins — like a label of ingredients on a box of cereal.

    From headlight assemblies to rear bumpers, every physical component in a modern vehicle can be traced back to the precise location it was built.

    The same can’t be said for automotive software. But Cybeats Technologies Corp. is working on it, starting with the Automotive Parts Manufacturers’ Association’s (APMA) new electric concept vehicle, Project Arrow.

    “This is actually the first vehicle that will have software supply-chain transparency,” said Dmitry Raidman, chief technology officer at the Toronto-based company.

    Cybeats catalogues the origins of the underlying code that makes up the software used by each component on Project Arrow.

    “For every single device that runs on software, there will be a list of ingredients,” he said.

    Software is typically assembled from a range of underlying elements as opposed to being built from scratch.

    OPEN-SOURCE ISSUES

    LINKEDIN

    Raidman: “If software’s not supported, there is a new risk, a new bug, new vulnerabilities that will not be fixed.”

    Cybeats’ tool provides a “strong sense” of where the software running on the vehicle comes from and whether it poses any risks to either the operation of the vehicle or the data the vehicle collects, said APMA President Flavio Volpe.

    “We think about 75 per cent of software in this business is open-source,” Volpe said. “Well, the amount of open-source software makes the data that you create potentially at risk, or suspect.”

    Unlike proprietary closed-source software, the code of which is tightly guarded, the underlying code for open-source software is readily available. This shortens development times by giving programmers the ability to edit or build on code that’s already proven, but also exposes the code to bad actors.

    Software supply-chain transparency will become more of a priority in the coming years, Volpe said, as EVs have a “dramatically larger” digital footprint than their internal-combustion-engine cousins and thus a greater number of open-source vulnerabilities.

    A BILLION LINES OF CODE

    The typical vehicle today contains 10 million to 50 million lines of code that allow disparate components to function in a vehicle, Raidman said. By the time fully autonomous technology emerges, Cybeats expects that will grow to one billion lines.

    For each vehicle part that runs software, Cybeats’ technology keeps an ingredient list known as a software bill of materials (SBOM). The company’s management platform, called Studio, does not sift through every line of code but monitors the open-source dependencies for vulnerabilities.

    Because about 80 per cent of automotive software is built from open sources, it is a “very significant attack vector” within the software supply chain, Raidman said.

    A vendor going out of business and no longer updating its software is just one instance that would put the underlying software at risk, he said.

    “You want to know about this because if software’s not supported, there is a new risk, a new bug, new vulnerabilities that will not be fixed.”

    Armed with an SBOM for each auto part, Cybeats’ monitors for any such vulnerabilities. Every hour, the management platform keeps track of global cybersecurity events and threats from multiple sources of security advisories. When a potential new risk to the open-source code used in an auto part is spotted, the supplier or automaker is alerted.

    “You need to be proactive about it,” Raidman said, adding that response times are also quicker and corrective actions easier when software developers can be directed to precisely what code needs to be fixed.

    INDUSTRY TAKES NOTICE

    While Project Arrow, launched Jan. 5 at CES in Las Vegas, is leading the way for SBOM use in automotive, Raidman said Cybeats is talking with automakers and parts suppliers about the technology, though it has not disclosed any deals to date.

    There are also nonautomotive applications for the technology, Raidman said. Cybeats already has contracts with companies involved in industrial control, medical devices and energy infrastructure.

    Regulators in Europe and the United States are also taking note. In mid-2021, for instance, U.S. President Joe Biden issued an executive order aimed at bolstering cybersecurity practices, including a directive to federal agencies to explore standards for SBOMs.

    “It’s going to be universal; everyone will use [SBOMs],” Raidman said. “Every single company that builds software will not be able to sell software without it.”

    The global focus on cybersecurity has led to rapid growth since Cybeats was founded in 2016, Raidman said. The company employs 55 people.

    RECOMMENDED FOR YOU
    Flo calls U.S. federal aid ‘critical' to its expansion strategy
    Recommended for You
    FLOGUYS-MAIN_i.jpg
    Flo calls U.S. federal aid ‘critical' to its expansion strategy
    Nissan Acerta
    Canada's Acerta Analytics Solutions, Nissan test AI tool made to prevent failures
    wesley_tingey_HACKERS_RED-MAIN.jpg
    Automakers pay white hat hackers much less compared with other industries
    Andy Wadeson
    Sponsored Content: Expert Insights: The Implications of Rising Interest Rates
    Digital Edition
    March 2023 Cover
    View latest issue
    See our archive
    Sign up for free newsletters
    EMAIL ADDRESS

    Please enter a valid email address.

    Please enter your email address.

    Please verify captcha.

    Please select at least one newsletter to subscribe.

    You can unsubscribe at any time through links in these emails. For more information, see our Privacy Policy.

    Get Free Newsletters

    Sign up today for our Weekly Newsletter, Daily Newsletter and Breaking News Alerts. We'll deliver the news you need to know straight to your inbox.

    You can unsubscribe at any time through links in these emails. For more information, see our Privacy Policy.

    Subscribe Now

    An Automotive News Canada subscription includes 12 monthly issues – delivered in print to your doorstep, and digitally to your inbox – plus unlimited, 24/7 access to our website.

    Subscribe Now
    Connect With Us
    • Facebook
    • Twitter
    • Instagram

    Our Mission

    The Automotive News Canada mission is to be the primary source of industry news, data and understanding for the industry's decision-makers interested in Canada.

    Contact Us

    1155 Gratiot Ave
    Detroit MI 48207

    1-877-812-1257

    Email Us

    ISSN 2475-5001 (print)
    ISSN 2475-501X (online)

    Resources
    • About us
    • Contact Us
    • Digital Edition Archive
    • Advertise with Us
    • Reprints
    • Ad Choices Ad Choices
    • Sitemap
    Legal
    • Terms and Conditions
    • Privacy Policy
    • Privacy Request
    Automotive News Canada
    Copyright © 1996-2023. Crain Communications, Inc. All Rights Reserved.
    • HOME
    • News
      • News by Brand
        • Aston Martin
        • BMW
          • Mini
          • Rolls Royce
        • Daimler
          • Mercedes Benz
          • Smart
        • Ferrari
        • Ford
          • Lincoln
        • General Motors
          • Buick
          • Cadillac
          • Chevrolet
          • GMC
        • Honda
          • Acura
        • Hyundai
          • Kia
        • Mazda
        • Mitsubishi
        • Nissan
          • Infiniti
        • Stellantis
          • Alfa Romeo
          • Chrysler
          • Dodge
          • Fiat Chrysler
          • Jeep
          • Fiat
          • Lancia
          • Maserati
          • Ram
        • Subaru
        • Tata
          • Jaguar
          • Land Rover
        • Tesla
        • Toyota
          • Lexus
        • Volkswagen
          • Audi
          • Bentley
          • Bugatti
          • Lamborghini
          • Porsche
        • Volvo
        • VinFast
      • Auto Shows
        • Toronto Auto Show
      • Canadians Abroad
      • Photo Galleries
      • Automakers
      • Suppliers
      • Retail
      • Dealer Best Practices
      • Government Relations
      • Trade and Tariffs
      • Technology
      • Labour
    • Opinion
      • Blogs
    • Video
    • Podcasts
    • EVENTS & AWARDS
      • 2022 Auto News Canada All-Stars
      • 2022 Canadians To Watch
      • 2022 Diversity Champions
      • Best Dealerships To Work For
      • Canada Congress
      • Retail Forum: Dealer Discussions
      • Leading Women Roundtables
      • Embracing Diversity Roundtable
      • EVs Decoded
    • Jobs & Classifieds
    • +MORE
      • IN THE DRIVER'S SEAT
      • NEWSLETTERS
      • SUBSCRIBE
      • CLASSIFIEDS
      • PEOPLE ON THE MOVE
      • COMPANIES ON THE MOVE
      • WEBINARS
      • ADVERTISE WITH US
      • CONTACT US
      • DIGITAL EDITION
      • PUBLISHING PARTNERS