SecForCARs logo

Scanning Framework for Cars or Single ECUs

Fraunhofer AISEC

During the SecForCARs project, a comprehensive penetration testing toolchain for cars was developed. The scope of the toolchain is conducting penetration tests from a single ECU up to whole cars, with the main focus on the UDS interface.


Built upon a modular and extensible design, it is capable of multiple transport protocols, such as DoIP or ISO-TP over CAN. Featuring a flexible IPC-based plugin interface, proprietary transport protocols can be added to the toolchain easily. Utilizing a modular design, the toolchain can be extended with proprietary extensions or custom scanners without great effort.

Taking advantage of this modular design, the logging and archiving functionality was developed separately. Acting as a generic interface, the logging functionality implements reproducible tests and enables post-processing analyzer tasks.