Cybersecurity News in Asia

RECENT STORIES:

SEGA moves faster with flow-based network monitoring
Cyber risks of connected electric buses in public transit need greater...
Five strategies to address cybersecurity tool sprawl risks
LexisNexis Risk Solutions Receives Two Recognitions at Regulation Asia...
LRQA and UKAS Explore the Evolving Role of Certification Bodies in a C...
Mastercard Champions Password-Free, Number-Free Checkout Across Asia P...
LOGIN REGISTER
CybersecAsia
  • Features
    • Featured

      Staying resilient against the invisible onslaught of AI-powered attacks

      Staying resilient against the invisible onslaught of AI-powered attacks

      Tuesday, November 11, 2025, 11:27 AM Asia/Singapore | Features
    • Featured

      Tackling the risks of AI innovations in the cloud

      Tackling the risks of AI innovations in the cloud

      Wednesday, November 5, 2025, 10:36 AM Asia/Singapore | Features
    • Featured

      Weaponization of GenAI by adversaries

      Weaponization of GenAI by adversaries

      Wednesday, November 5, 2025, 10:15 AM Asia/Singapore | Features, Newsletter
  • Opinions
  • Tips
  • Whitepapers
  • Awards 2025
  • Directory
  • E-Learning

Select Page

Cyber risks of connected electric buses in public transit need greater vigilance

By CybersecAsia editors | Thursday, November 13, 2025, 12:23 PM Asia/Singapore

Cyber risks of connected electric buses in public transit need greater vigilance

Recent trends in the targeting of critical public transport infrastructures prompt reviews of supply chain vulnerability profiles and EV cyber resilience.

Recent investigations by a Norwegian public transport operator have revealed vulnerabilities in electric buses’ connectivity systems, highlighting how direct digital access to key vehicle components could potentially allow remote disabling.

While these findings sparked immediate scrutiny by authorities, the broader concern lies in the inherent cybersecurity risks associated with connected vehicle technologies and foreign supply chains in critical public transport infrastructures.

Connected vehicles increasingly rely on Over-The-Air (OTA) software updates, cloud-based diagnostics, and telematics systems that transmit data remotely to optimize maintenance and operational efficiency. These functionalities can introduce multiple attack surfaces that adversaries could exploit. Critical vectors include unauthorized remote access, interception of data streams, compromised software update processes, and manipulation of power management systems.

According to the investigations, several key factors must be addressed:

  • Robust access controls: Strict authentication mechanisms and role-based permissions are essential to prevent unauthorized access. Segmentation between diagnostic, control, and user systems limits potential damage.
  • Secure software update mechanisms: OTA updates require cryptographic signing and verification to guarantee integrity and authenticity of software patches, preventing malicious code injection.
  • Data encryption and privacy: Data transmitted between vehicles and cloud systems must be encrypted end-to-end to prevent interception and tampering, preserving passenger privacy and operational confidentiality.
  • Continuous monitoring and incident response: Real-time cybersecurity monitoring paired with rapid incident response capabilities help identify and neutralize threats before they impact safety or service continuity.
  • Fail-safe and local control mechanisms: Systems that physically or logically disconnect from external networks during anomalies ensure local control is retained and critical functions remain operational even amid cyberattacks.
  • Compliance with rigorous standards: Adoption of comprehensive security frameworks such as UNECE regulations R155 and R156, along with ISO 27001, provide structured approaches to cybersecurity risk management.

This evolving technological landscape demands ongoing vigilance, transparency, and collaboration among manufacturers, operators, regulators, and cybersecurity experts to safeguard public transport systems against cyber threats and network outages.

Share:

PreviousFive strategies to address cybersecurity tool sprawl risks

Related Posts

Microsoft Teams’ PowerApps vulnerability disclosed and patched

Microsoft Teams PowerApps vulnerability disclosed and patched

Wednesday, June 16, 2021

Phishing content can now contain three novel ways to evade AI filters

Phishing content can now contain three novel ways to evade AI filters

Tuesday, March 21, 2023

Despite strong talent supply growth, APAC is short of 2.2m cybersecurity professionals

Despite strong talent supply growth, APAC is short of 2.2m cybersecurity professionals

Wednesday, October 26, 2022

Ransomware asking rates increased by 53% in 2021: global survey

Ransomware asking rates increased by 53% in 2021: global survey

Friday, September 16, 2022

Leave a reply Cancel reply

You must be logged in to post a comment.

Voters-draw/RCA-Sponsors

Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
previous arrow
next arrow

CybersecAsia Voting Placement

Gamification listing or Participate Now

PARTICIPATE NOW

Vote Now -Placement(Google Ads)

Top-Sidebar-banner

Whitepapers

  • 2024 Insider Threat Report: Trends, Challenges, and Solutions

    2024 Insider Threat Report: Trends, Challenges, and Solutions

    Insider threats continue to be a major cybersecurity risk in 2024. Explore more insights on …Download Whitepaper
  • AI-Powered Cyber Ops: Redefining Cloud Security for 2025

    AI-Powered Cyber Ops: Redefining Cloud Security for 2025

    The future of cybersecurity is a perfect storm: AI-driven attacks, cloud expansion, and the convergence …Download Whitepaper
  • Data Management in the Age of Cloud and AI

    Data Management in the Age of Cloud and AI

    In today’s Asia Pacific business environment, organizations are leaning on hybrid multi-cloud infrastructures and advanced …Download Whitepaper
  • Mitigating Ransomware Risks with GRC Automation

    Mitigating Ransomware Risks with GRC Automation

    In today’s landscape, ransomware attacks pose significant threats to organizations of all sizes, with increasing …Download Whitepaper

Middle-sidebar-banner

Case Studies

  • Meeting the business resilience challenges of digital transformation

    Meeting the business resilience challenges of digital transformation

    Data proves to be key to driving secure and sustainable digital transformation in Southeast Asia.Read more
  • Upgrading biometric authentication system protects customers in the Philippines: UnionDigital Bank

    Upgrading biometric authentication system protects customers in the Philippines: UnionDigital Bank

    An improved dual-liveness biometric framework can counter more deepfake threats, ensure compliance, and protect underbanked …Read more
  • HOSTWAY gains 73% operational efficiency for private cloud operations  

    HOSTWAY gains 73% operational efficiency for private cloud operations  

    With NetApp storage solutions, the Korean managed cloud service provider offers a lean, intelligent architecture, …Read more
  • CISOs can navigate emerging risks from autonomous AI with a new security framework

    CISOs can navigate emerging risks from autonomous AI with a new security framework

    See how security leaders can adopt layered strategies addressing intent, governance, and oversight to manage …Read more

Bottom sidebar

  • Our Brands
  • DigiconAsia
  • MartechAsia
  • Home
  • About Us
  • Contact Us
  • Sitemap
  • Privacy & Cookies
  • Terms of Use
  • Advertising & Reprint Policy
  • Media Kit
  • Subscribe
  • Manage Subscriptions
  • Newsletter

Copyright © 2025 CybersecAsia All Rights Reserved.