<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Uraeus Automotive Cybersecurity Blog</title>
    <link>https://uraeus.io/</link>
    <description>Expert insights on automotive cybersecurity standards, TARA methodology, SBOM management, and fleet security from the Uraeus engineering team.</description>
    <language>en-us</language>
    <lastBuildDate>Fri, 21 Feb 2026 00:00:00 +0000</lastBuildDate>
    <atom:link href="https://uraeus.io/feed.xml" rel="self" type="application/rss+xml"/>

    <item>
      <title>ISO/SAE 21434 TARA: Step-by-Step Implementation Guide</title>
      <link>https://uraeus.io/resources/iso-21434-tara-guide/</link>
      <guid isPermaLink="true">https://uraeus.io/resources/iso-21434-tara-guide/</guid>
      <pubDate>Sun, 01 Feb 2026 00:00:00 +0000</pubDate>
      <description>A step-by-step implementation guide for ISO/SAE 21434 Threat Analysis and Risk Assessment (TARA) methodology in automotive cybersecurity.</description>
    </item>

    <item>
      <title>UNECE R155 Type Approval: What OEMs Need to Know</title>
      <link>https://uraeus.io/resources/unece-r155-type-approval/</link>
      <guid isPermaLink="true">https://uraeus.io/resources/unece-r155-type-approval/</guid>
      <pubDate>Thu, 05 Feb 2026 00:00:00 +0000</pubDate>
      <description>Everything OEMs need to know about UNECE R155 type approval requirements for cybersecurity management systems.</description>
    </item>

    <item>
      <title>SBOM Management Best Practices for Automotive</title>
      <link>https://uraeus.io/resources/automotive-sbom-management/</link>
      <guid isPermaLink="true">https://uraeus.io/resources/automotive-sbom-management/</guid>
      <pubDate>Tue, 20 Feb 2026 00:00:00 +0000</pubDate>
      <description>Best practices for Software Bill of Materials (SBOM) management in the automotive industry, covering SPDX, CycloneDX, and supply chain security.</description>
    </item>

    <item>
      <title>Mastering Automotive Network Service Discovery Protocols</title>
      <link>https://uraeus.io/resources/service-discovery-protocols/</link>
      <guid isPermaLink="true">https://uraeus.io/resources/service-discovery-protocols/</guid>
      <pubDate>Tue, 10 Feb 2026 00:00:00 +0000</pubDate>
      <description>A complete guide to SOME/IP-SD, DoIP, and service-oriented communication in modern vehicle architectures.</description>
    </item>

    <item>
      <title>Digital Certificate Management for Automotive Security</title>
      <link>https://uraeus.io/resources/automotive-certificate-management/</link>
      <guid isPermaLink="true">https://uraeus.io/resources/automotive-certificate-management/</guid>
      <pubDate>Thu, 15 Feb 2026 00:00:00 +0000</pubDate>
      <description>How to implement robust X.509 certificate lifecycle management for ECUs, V2X, and OTA update channels.</description>
    </item>

    <item>
      <title>Automating TARA with AI for Automotive</title>
      <link>https://uraeus.io/resources/automating-tara-with-ai/</link>
      <guid isPermaLink="true">https://uraeus.io/resources/automating-tara-with-ai/</guid>
      <pubDate>Wed, 11 Feb 2026 00:00:00 +0000</pubDate>
      <description>How AI and machine learning automate TARA asset identification, threat scenario generation, attack feasibility assessment, and risk calculation per ISO/SAE 21434.</description>
    </item>

    <item>
      <title>CycloneDX vs SPDX for Automotive SBOM</title>
      <link>https://uraeus.io/resources/cyclonedx-vs-spdx-automotive/</link>
      <guid isPermaLink="true">https://uraeus.io/resources/cyclonedx-vs-spdx-automotive/</guid>
      <pubDate>Fri, 13 Feb 2026 00:00:00 +0000</pubDate>
      <description>Deep comparison of CycloneDX and SPDX SBOM formats for automotive use cases, covering schema differences, VEX support, and regulatory alignment.</description>
    </item>

    <item>
      <title>CSMS Audit Preparation Checklist</title>
      <link>https://uraeus.io/resources/csms-audit-preparation/</link>
      <guid isPermaLink="true">https://uraeus.io/resources/csms-audit-preparation/</guid>
      <pubDate>Sat, 14 Feb 2026 00:00:00 +0000</pubDate>
      <description>Comprehensive checklist for CSMS audit preparation covering organizational, process, and documentation requirements per ISO/SAE 21434 and UNECE R155.</description>
    </item>

    <item>
      <title>Attack Trees vs Attack Paths in Automotive</title>
      <link>https://uraeus.io/resources/attack-trees-vs-attack-paths/</link>
      <guid isPermaLink="true">https://uraeus.io/resources/attack-trees-vs-attack-paths/</guid>
      <pubDate>Thu, 12 Feb 2026 00:00:00 +0000</pubDate>
      <description>When to use attack trees vs attack paths in automotive threat modeling, with practical examples and ISO/SAE 21434 alignment guidance.</description>
    </item>

    <item>
      <title>Mapping STRIDE to Automotive Threats</title>
      <link>https://uraeus.io/resources/mapping-stride-to-automotive/</link>
      <guid isPermaLink="true">https://uraeus.io/resources/mapping-stride-to-automotive/</guid>
      <pubDate>Thu, 12 Feb 2026 00:00:00 +0000</pubDate>
      <description>Practical guide to applying STRIDE threat categories to automotive attack surfaces including CAN bus, OBD-II, Ethernet, OTA, and V2X interfaces.</description>
    </item>

    <item>
      <title>Building a Vehicle Security Operations Center</title>
      <link>https://uraeus.io/resources/building-vehicle-soc/</link>
      <guid isPermaLink="true">https://uraeus.io/resources/building-vehicle-soc/</guid>
      <pubDate>Tue, 17 Feb 2026 00:00:00 +0000</pubDate>
      <description>Guide to building a Vehicle Security Operations Center covering architecture layers, staffing, tool stack, IT SOC integration, and R155 compliance.</description>
    </item>

    <item>
      <title>CAN Bus Anomaly Detection Techniques</title>
      <link>https://uraeus.io/resources/anomaly-detection-can-bus/</link>
      <guid isPermaLink="true">https://uraeus.io/resources/anomaly-detection-can-bus/</guid>
      <pubDate>Tue, 17 Feb 2026 00:00:00 +0000</pubDate>
      <description>Deep technical guide on CAN bus anomaly detection covering rule-based, statistical, and ML-based approaches for automotive intrusion detection systems.</description>
    </item>

    <item>
      <title>EU CRA vs UNECE R155 Comparison</title>
      <link>https://uraeus.io/resources/eu-cra-vs-unece-r155/</link>
      <guid isPermaLink="true">https://uraeus.io/resources/eu-cra-vs-unece-r155/</guid>
      <pubDate>Sun, 15 Feb 2026 00:00:00 +0000</pubDate>
      <description>Comparison of the EU Cyber Resilience Act and UNECE R155 for automotive companies, covering overlap areas, key differences, and dual compliance strategies.</description>
    </item>

    <item>
      <title>OTA Update Security for Connected Vehicles</title>
      <link>https://uraeus.io/resources/ota-update-security/</link>
      <guid isPermaLink="true">https://uraeus.io/resources/ota-update-security/</guid>
      <pubDate>Wed, 18 Feb 2026 00:00:00 +0000</pubDate>
      <description>Guide to securing over-the-air updates for vehicles covering PKI code signing, secure boot, SBOM tracking, and compliance with ISO/SAE 21434 and UNECE R156.</description>
    </item>

    <item>
      <title>V2X Security Monitoring Best Practices</title>
      <link>https://uraeus.io/resources/v2x-security-monitoring/</link>
      <guid isPermaLink="true">https://uraeus.io/resources/v2x-security-monitoring/</guid>
      <pubDate>Wed, 18 Feb 2026 00:00:00 +0000</pubDate>
      <description>Comprehensive guide to V2X security covering PKI trust models, misbehavior detection, monitoring approaches, and regulatory landscape across US, EU, and China.</description>
    </item>

    <item>
      <title>X.509 Certificates in Automotive Security</title>
      <link>https://uraeus.io/resources/x509-certificates-automotive/</link>
      <guid isPermaLink="true">https://uraeus.io/resources/x509-certificates-automotive/</guid>
      <pubDate>Wed, 11 Feb 2026 00:00:00 +0000</pubDate>
      <description>End-to-end guide to X.509 certificate infrastructure for connected vehicles covering PKI architecture, certificate pinning, OCSP stapling, and secure boot chains.</description>
    </item>

    <item>
      <title>Cybersecurity Goals vs Requirements in ISO/SAE 21434</title>
      <link>https://uraeus.io/resources/cybersecurity-goals-vs-requirements/</link>
      <guid isPermaLink="true">https://uraeus.io/resources/cybersecurity-goals-vs-requirements/</guid>
      <pubDate>Fri, 13 Feb 2026 00:00:00 +0000</pubDate>
      <description>How to correctly distinguish cybersecurity goals from security requirements in ISO/SAE 21434, with practical examples and traceability guidance.</description>
    </item>

    <item>
      <title>Third-Party Component Risk Scoring for Automotive Software</title>
      <link>https://uraeus.io/resources/third-party-component-risk-scoring/</link>
      <guid isPermaLink="true">https://uraeus.io/resources/third-party-component-risk-scoring/</guid>
      <pubDate>Fri, 13 Feb 2026 00:00:00 +0000</pubDate>
      <description>How to build a risk scoring framework for third-party software components in automotive, covering SBOM-driven vulnerability analysis and contextualised CVSS scoring.</description>
    </item>

    <item>
      <title>Supplier Cybersecurity Questionnaire Guide</title>
      <link>https://uraeus.io/resources/supplier-cybersecurity-questionnaire/</link>
      <guid isPermaLink="true">https://uraeus.io/resources/supplier-cybersecurity-questionnaire/</guid>
      <pubDate>Sat, 14 Feb 2026 00:00:00 +0000</pubDate>
      <description>How to design evidence-based supplier cybersecurity assessments tied to ISO/SAE 21434 Clause 7 and automate SBOM collection and vulnerability tracking.</description>
    </item>

    <item>
      <title>ISO/PAS 5112 Cybersecurity Audit Guide</title>
      <link>https://uraeus.io/resources/iso-pas-5112-audit-guide/</link>
      <guid isPermaLink="true">https://uraeus.io/resources/iso-pas-5112-audit-guide/</guid>
      <pubDate>Sun, 15 Feb 2026 00:00:00 +0000</pubDate>
      <description>Comprehensive guide to ISO/PAS 5112 automotive cybersecurity audit standard covering audit stages, competence requirements, and common non-conformities.</description>
    </item>

    <item>
      <title>Automotive Fuzz Testing Guide</title>
      <link>https://uraeus.io/resources/automotive-fuzz-testing/</link>
      <guid isPermaLink="true">https://uraeus.io/resources/automotive-fuzz-testing/</guid>
      <pubDate>Mon, 16 Feb 2026 00:00:00 +0000</pubDate>
      <description>Deep technical guide on fuzz testing for automotive systems covering CAN, UDS, DoIP, SOME/IP fuzzing, ECU firmware testing, and CI/CD integration.</description>
    </item>

    <item>
      <title>Penetration Testing Connected Vehicles</title>
      <link>https://uraeus.io/resources/penetration-testing-connected-vehicles/</link>
      <guid isPermaLink="true">https://uraeus.io/resources/penetration-testing-connected-vehicles/</guid>
      <pubDate>Mon, 16 Feb 2026 00:00:00 +0000</pubDate>
      <description>Structured methodology for penetration testing connected vehicles covering wireless, wired, cloud, and OTA attack surfaces aligned with ISO/SAE 21434.</description>
    </item>

    <item>
      <title>Fleet Incident Response Playbooks</title>
      <link>https://uraeus.io/resources/fleet-incident-response-playbooks/</link>
      <guid isPermaLink="true">https://uraeus.io/resources/fleet-incident-response-playbooks/</guid>
      <pubDate>Tue, 17 Feb 2026 00:00:00 +0000</pubDate>
      <description>How to build and operationalize incident response playbooks for connected vehicle fleets with templates for common scenarios and RACI matrices.</description>
    </item>

    <item>
      <title>Scaling Vehicle Telemetry for Fleet Security</title>
      <link>https://uraeus.io/resources/scaling-vehicle-telemetry/</link>
      <guid isPermaLink="true">https://uraeus.io/resources/scaling-vehicle-telemetry/</guid>
      <pubDate>Thu, 19 Feb 2026 00:00:00 +0000</pubDate>
      <description>Architecture guide for ingesting and processing vehicle telemetry at fleet scale covering edge preprocessing, transport protocols, and data lake architecture.</description>
    </item>

    <item>
      <title>From TARA to Runtime Detection</title>
      <link>https://uraeus.io/resources/tara-to-runtime-detection/</link>
      <guid isPermaLink="true">https://uraeus.io/resources/tara-to-runtime-detection/</guid>
      <pubDate>Thu, 19 Feb 2026 00:00:00 +0000</pubDate>
      <description>How to bridge the gap between design-time TARA threat scenarios and runtime detection rules for continuous automotive security monitoring.</description>
    </item>

    <item>
      <title>Vulnerability Management Lifecycle for Connected Vehicles</title>
      <link>https://uraeus.io/resources/vulnerability-management-lifecycle/</link>
      <guid isPermaLink="true">https://uraeus.io/resources/vulnerability-management-lifecycle/</guid>
      <pubDate>Thu, 19 Feb 2026 00:00:00 +0000</pubDate>
      <description>End-to-end vulnerability management lifecycle for connected vehicles from discovery through remediation, with automotive-contextualised CVSS scoring and PSIRT operations.</description>
    </item>

    <item>
      <title>Cybersecurity Monitoring as R155 Evidence</title>
      <link>https://uraeus.io/resources/cybersecurity-monitoring-r155-evidence/</link>
      <guid isPermaLink="true">https://uraeus.io/resources/cybersecurity-monitoring-r155-evidence/</guid>
      <pubDate>Fri, 20 Feb 2026 00:00:00 +0000</pubDate>
      <description>How cybersecurity monitoring serves as evidence for UNECE R155 post-production compliance with practical evidence packaging and KPI guidance.</description>
    </item>

    <item>
      <title>SDVs and Cybersecurity Debt</title>
      <link>https://uraeus.io/resources/sdv-cybersecurity-debt/</link>
      <guid isPermaLink="true">https://uraeus.io/resources/sdv-cybersecurity-debt/</guid>
      <pubDate>Fri, 20 Feb 2026 00:00:00 +0000</pubDate>
      <description>How the shift to software-defined vehicles creates new patterns of cybersecurity debt, with metrics, management strategies, and architectural choices to reduce it.</description>
    </item>

    <item>
      <title>Automotive Cybersecurity Maturity Model</title>
      <link>https://uraeus.io/resources/automotive-cybersecurity-maturity-model/</link>
      <guid isPermaLink="true">https://uraeus.io/resources/automotive-cybersecurity-maturity-model/</guid>
      <pubDate>Sat, 21 Feb 2026 00:00:00 +0000</pubDate>
      <description>A practical 5-level maturity model for automotive cybersecurity organizations with self-assessment framework and roadmap planning guidance.</description>
    </item>

    <item>
      <title>True Cost of a Vehicle Cybersecurity Recall</title>
      <link>https://uraeus.io/resources/vehicle-cybersecurity-recall-cost/</link>
      <guid isPermaLink="true">https://uraeus.io/resources/vehicle-cybersecurity-recall-cost/</guid>
      <pubDate>Sat, 21 Feb 2026 00:00:00 +0000</pubDate>
      <description>Comprehensive analysis of cybersecurity-triggered vehicle recall costs covering direct, indirect, regulatory, reputational, and opportunity costs with ROI case for proactive investment.</description>
    </item>

  </channel>
</rss>
