Full agenda — 17 September 2026 (all times CEST) Welcome! 09:00–09:30 · all stages
KEYNOTE: The Dark Side of AI | How Hackers use AI and Deepfakes 09:30–10:30 · all stages
Dr. Mark T Hoffman (Crime- & Intelligence Analyst (Cyber-Profiler))
Most cyberattacks are caused by human error and hackers use AI & Deepfakes to attack us. Dr. Mark T. Hofmann talks in an inspiring way about the profiles and motives of hackers, the Darknet…
Freshness-by-Session: A Minimal-Overhead Approach Against MITM Data Retention in Automotive ECUs 10:35–11:20 · Stage 1
Jocelyn Leheup (In-vehicle Cybersecurity Lead Architect for SDV, Ampere (Renault Group)
Ensuring end‑to‑end authenticity and freshness in Software‑Defined Vehicles (SDVs) is critical to protect safety‑sensitive and regulatory‑relevant data against retention and delayed‑delivery attacks. Existing automotive security approaches enforce freshness through per‑message counters, link‑level protection, external…
Digital Forensics for Connected Vehicle Incidents 10:35–11:20 · Stage 2
Sathyanarayana Jayatheertha Beejadi (Security Specialist - Automotive Threat Detection, Embitel Technologies, A Volkswagen Group Company) · Nikhil Dabole (Senior Security Architect, Embitel Technologies, A Volkswagen Group Company)
Connected and software-defined vehicles have become distributed cyber-physical ecosystems, spanning ECUs, telematics platforms, cloud services, mobile apps, and OTA infrastructure. While the industry has invested heavily in preventive cybersecurity, far less attention has gone…
Closing the Loop: Evidence-Based Risk Management for Vehicles After SOP 10:35–11:20 · Stage 3
Falk Mayer (Managing Director, CYMETRIS)
This talk proposes a method for closing that gap by connecting post-SOP cybersecurity evidence to an automotive attack-path knowledge graph. By introducing operational exploitability as an additional evidence layer, the approach helps organizations validate…
EXPLOIT STORY: Demonstration of Infotainment Root Access on the “Frankie” (Audi RS4) Training Rig 11:25–12:10 · Stage 1
Noel Lowdon (Director, Harper Shaw Investigation Consultants Ltd)
Demonstration on the “Frankie” Vehicle Systems Forensics Rig, built from 2018 Audi RS4 components, showing the controlled acquisition of root access to the infotainment head unit and extraction of a memory chip image for…
CARTINT: An Open-Source Automotive Threat Intelligence Dashboard 11:25–12:10 · Stage 2
Rolando Doromal, Jr (Auto Threat Researcher, VicOne) · Reuel Magistrado (Automotive Security Researcher, VicOne)
CARTINT is an open-source Automotive Threat Intelligence Dashboard that aggregates live threat feeds from seven sources, maps findings to the Auto-ISAC Automotive Threat Matrix (ATM), and generates structured CTI reports. Built for VSOC teams…
From Classical PKI to Hybrid PQC: A Crypto-Agile Migration Framework for Edge Systems 11:25–12:10 · Stage 3
Mahmoud Saad (Principal Automotive Cybersecurity Engineer, Brightskies inc) · Abdelrahman Ahmed (Senior Cybersecurity Engineer, Brightskies inc) · Mohamed Hegazy (Cybersecurity Expert, BrightSkies Inc)
The "Harvest Now, Decrypt Later" (HNDL) quantum threat is a ticking time bomb for long-lifecycle Software-Defined Vehicles (SDVs), especially with upcoming regulations like the EU Cyber Resilience Act demanding future-proof security. However, hastily replacing…
Beyond Ethernet: Foundational security for the vehicle - MACsec, CANsec, and the FD Adaptation Layer 12:15–13:00 · Stage 1
Arthur Mutter (Expert for In-Vehicle-Communication and Security, Robert Bosch GmbH) · Dr. Friedrich Wiemer (Senior Security Expert for In-Vehicle-Communication, Robert Bosch GmbH)
Today's vehicles run three incompatible Layer-2 security stacks: MACsec on Ethernet, SecOC on CAN FD, and CAN XL currently specifies CANsec. We show how to collapse all three into one - by reusing an…
A Day in the Life of a Vehicle Under Attack 12:15–13:00 · Stage 2
Lima Madomi (PhD Researcher and Project Manager, University of Geneva | TPG)
This session presents a realistic, scenario driven analysis of a cyber attack on a connected and automated vehicle over the course of a single day. It focuses on the investigative aspects of such incidents,…
A Hardware-Backed Asymmetric Signing Approach for Fleet Management 12:15–13:00 · Stage 3
Shane Power (Student in Bsc Applied Computing, South East Technological University | Waterford)
This talk presents a working prototype of a smartphone-based digital car key system designed for fleet and rental operators. The design separates signing material from verification material: private keys are generated and held inside…
PANEL DISCUSSION: Beyond Cars: Securing the Future of Connected Two-Wheel Mobility 13:05–14:05 · all stages
Klemen Dobravec (Functional Safety and Cybersecurity Department Lead, MAHLE Electric Drives) · Nikolaos Papanikoloudis (Cybersecurity Officer, Yamaha E-Bike Systems Germany) · Jagor Cakmak (Cybersecurity Manager, Porsche E-Bikes Performance) · Thomas Faschang (Vehicle Security Engineer, Bajaj Mobility AG) · Irene Seidler (Freelance Motorcyle Trainer and Cybersecurity Expert)
As e-bikes and motorcycles become increasingly connected, they face a cybersecurity landscape that is far less mature than the automotive industry's. This panel brings together industry experts for a collaborative discussion on the unique…
Why the Cyber Resilience Act Is More Than Compliance for Off‑Road Vehicle OEMs ? 14:10–14:55 · Stage 1
Nikhil Bogam (Senior Lead Embedded Security Engineer, John Deere India Private Limited) · Manoj Dasari (Engineering Manager, John Deere India Private Limited)
The Cyber Resilience Act (CRA) is often viewed purely as a compliance obligation, but for off‑road vehicle OEMs it represents a broader opportunity. By mandating secure‑by‑design development, structured vulnerability handling, supplier transparency, and lifetime…
You Can’t Secure What You Can’t Control: Opening Up the RH850 14:10–14:55 · Stage 2
Julien Rakotomalala (R&D Engineer, Quarkslab) · Philippe Azalbert (R&D Engineer, Quarkslab)
Modern automotive microcontrollers like the RH850 could be difficult to fully analyze due to proprietary tooling and restricted debug access. This lack of control directly limits our ability to assess and improve their security.…
The Stateless Monitoring Gap 14:10–14:55 · Stage 3
Yaniv Maimon (VP Cyber Services, Upstream)
Vehicle Security Operations Centers (vSOCs) are increasingly required to operate over large scale, heterogeneous data environments that include vehicle telemetry, command and control interactions, backend APIs, service layer transactions, and most recently MCPs and…
From Entropy to Decommissioning: Cryptographic Key Management Strategies Across the Automotive Suppl 15:00–15:45 · Stage 1
Mahmoud Saad (Principal Automotive Cybersecurity Engineer, Brightskies inc) · Abdelrahman Ahmed (Senior Cybersecurity Engineer, Brightskies inc) · Mohamed Hegazy (Cybersecurity Expert, BrightSkies Inc)
From Entropy to Decommissioning: Cryptographic Key Management Strategies Across the Automotive Supply Chain. Automotive cryptographic key management presents challenges fundamentally different from enterprise IT, driven by heterogeneous ECUs, multi‑tier supply chains, and vehicle lifetimes…
Trust at the Gladhand: A Three-Tier Cryptographic Framework for Cross-Vendor Truck and Trailer 15:00–15:45 · Stage 2
Gnanagiri Balasubramanian (Head of Cybersecurity and Functional Safety, BreachLabz India) · Jan-Peter von Hunnius (Embedded & Automotive Cybersecurity Expert, Breachlabz) · Ashwin Balaji Selvaraj (Cybersecurity Architect, Breachlabz, India)
Heavy-duty road transport relies on a transient cross-organizational coupling between trucks and trailers built by different manufacturers. The ISO 11992 electrical interface (CAN at 125 to 250 kbit per second over the legacy ISO…
Testing Automated Driving Systems Against Adversarial Manoeuvre Attacks 15:00–15:45 · Stage 3
Dr. Aryan Pasikhani (Co-Founder & Chief Scientific Officer, CybPass Ltd)
Adversarial manoeuvre attacks use physically plausible behaviour by a traffic participant to induce unsafe behaviour in an Automated Driving System (ADS). Unlike sensor spoofing, message injection, or software exploitation, these attacks operate through the…
PANEL DISCUSSION: The State of Automotive Cybersecurity 15:50–16:50 · all stages
Faye Francy (Executive Director, Auto-ISAC) · Michael Schneider (Principal Expert for Product Cybersecurity and Privacy, AUMOVIO Germany GmbH) · John Krzeszewski (Director of Product Security, Brunswick Corporation) · Dr. Priti Ranadive (Individual Consultant) · Paul Wooderson (Chief Engineer for cybersecurity, HORIBA MIRA)
The rules of the road are being rewritten. Between tightening global regulations, the shift to software-defined vehicles, and cyber threats that move faster every year, automotive cybersecurity has never been more consequential — or…
EXPLOIT STORY: Bypassing the Immobilizer via CAN Injection 16:55–17:40 · Stage 1
Vishwas CN (Senior Cybersecurity Consultant and Lead Developer, CyMobility)
This session presents a live demonstration of how the immobilizer systems in many modern vehicles can be defeated by an attacker with physical access to the internal wiring. By tapping into the Controller Area…
Motorcycle (IM)Mobilizer – Bypassing Motorcycle Security 16:55–17:40 · Stage 2
Scott Sheahan (Embedded Security Pentester, Rustic Security LLC)
This presentation, outlinesthe extensive research and penetration testing methodology used to identify and exploitvulnerabilities in a modern motorcycle’s electronic security systems, specificallyfocusing on the immobilizer function. Presented by Scott Sheahan of Rustic SecurityLLC, the…
Graph-Based Detection of Corrupted Clients in Federated CAN Bus Intrusion Detection Systems 16:55–17:40 · Stage 3
Tim Leonhardt (Graduate Student in Automotive Engineering, Clemson University)
This work-in-progress paper presents a graph-based corrupted node detection framework for Federated Learning (FL) environments applied to Controller Area Network (CAN) bus intrusion detection systems. The proposed approach combines Graph Attention Networks (GAT), graph…
Security, Privacy, & Safety in SDV's - Global Survey 2026 17:45–18:30 · Stage 1
Stephen Bell (Chief Analyst - Digital Mobility, Omdia)
This presentation offers an evidence-based, security-first lens on the evolution of Software-Defined Vehicles (SDVs), grounded in Omdia’s 2026 global survey of 559 automotive professionals across seven countries. The session provides a rigorous picture of…
Cross‑Domain Cybersecurity Assurance for Railway System Through Automotive TARA Integration 17:45–18:30 · Stage 2
Louis Nguyen (Cybersecurity - Team Lead, FEV North America) · Felipe de Jesus Hernandez Rubio (Cybersecurity Engineer, FEV.io)
Railway sector is rapidly adopting connected and software‑defined capabilities. While these technologies improve efficiency in the operation, they can expand the attack surface and increase the need for systematic cybersecurity risk assessment. In parallel…
RDX: A Vendor Neutral Format for Exchanging Automotive Cybersecurity Data 17:45–18:30 · Stage 3
Matthew Moser (Software Engineer, Itemis) · Jürgen Wurzinger (Product Manager – Virtual Engineering & Cybersecurity, AVL)
This session will discuss the current issues with exchanging information within the automotive domain, introduce a RDX format, and discuss how a vendor neutral format would alleviate numerous issues that the industry faces. Preview…
PANEL DISCUSSION: Understanding the Hype: Will AI Eat Cybersecurity for Breakfast? 18:35–19:35 · all stages
Natasha Alkhatib (CSMS & SUMS Governance Project Manager, Renault Group) · Akshay Chalana (CEO, Saphira AI) · Jennifer Tisdale (Secure Vision Consulting, President) · Dr. Andre Weimerskirch (COO, Block Harbor Cybersecuirty) · Cassie Crossley (CEO and Co-Founder, VulNow)
AI is rapidly transforming cybersecurity but how much is innovation, and how much is hype? From generative AI and autonomous agents to machine learning-driven detection, AI is changing both how organizations defend against threats…
KEYNOTE: Inside Tesla: The Birth of the SDV (and what it has to do with cyber security) 19:40–20:40 · all stages
Florian Rohde (Managing Partner, iProcess Consulting)
KEYNOTE PRESENTATION: Inside Tesla: The Birth of the Software-Defined Vehicle (and what it has to do with cyber security) This keynote provides a first-hand view into how Tesla built and operated software for vehicles…
EXPLOIT STORY: Unlocking cars by reversing a common Chinese rolling code 20:45–21:30 · Stage 1
Danilo Erazo (Security Researcher, PCA Cyber Security)
This talk tells the story behind three CVEs discovered in a Chinese RKE system. It focuses on a widely used rolling code algorithm found in aftermarket Chinese remote keyless entry systems, some of which…
Automotive Software Supply Chain Security in the Age of Trigger-Happy Agentic Coding 20:45–21:30 · Stage 2
Surendra Pathak (Co-founder and CEO, Interlynk) · Ritesh Noronha (Co-Founder and CTO, Interlynk)
Software supply chain security was expected to mature as SBOM adoption grew and VEX became a standard. It has actually become harder, because code is increasingly being written by coding agents. A trigger-happy agent…
Persistent Personal Data Exposure Across Vehicle Ownership and Control Transitions 21:35–22:20 · Stage 1
Bhargab Acharya (PhD Student, University of Memphis)
Modern vehicles routinely ingest, generate, and store personal data to support infotainment, navigation, and connected services. While these data enable valuable in-vehicle functionality, they may persist beyond authorized use and become accessible when a…
Who’s Really in Charge: Silently Hijacking EV Charger via OCPP 21:35–22:20 · Stage 2
Louis Nguyen (Cybersecurity - Team Lead, FEV North America) · Edgar Sandoval (Independent Security Researcher)
This talk presents a hands‑on cybersecurity assessment of a commercial Level‑2 EV charger. The presentation follows a realistic attacker timeline, demonstrating how network traffic analysis revealed an OCPP‑related attack vector that enabled charger impersonation…
Closing 22:25–22:45 · all stages
Full abstracts and speaker bios on Airmeet