-

VicOne Collaborates with Microsoft to Provide Software Developers with Differentiated Automotive Threat Intelligence and Innovative and Seamless DevSecOps Workflow

Collaboration delivers end-to-end protection across automotive software lifecycle and streamlines secure code development for SDV manufacturers

DETROIT & TOKYO--(BUSINESS WIRE)--VicOne, an automotive cybersecurity solutions leader, today announced a collaboration with Microsoft to enable developers of vehicle software to proactively secure firmware and ensure end-to-end protection across the automotive software lifecycle. Manufacturers of software-defined vehicles (SDVs) benefit from differentiated automotive threat intelligence, streamlined and secure code development, enhanced continuous integration (CI) and automated security analysis. This collaboration enables an innovative developer, security and operations (DevSecOps) workflow.

“The DevSecOps workflow enabled by our collaboration with Microsoft offers unprecedented benefits to software developers and automotive OEMs (original equipment manufacturers) alike,” said Max Cheng, CEO of VicOne. “Developers realize a more efficient and effective path for rolling out innovative software solutions of proven security, while automakers are enabled to perform self-assessment not only of their own software but also for solutions from providers across their complex supply chains. The end-to-end protection enabled by this collaboration stands to transform the automotive software lifecycle and marketplace.”

VicOne xZETA now can integrate through GitHub

With this collaboration, automotive software developers access a seamless and powerful workflow for securing their software, using GitHub Advanced Security for Azure DevOps for source code analysis, VicOne xZETA for binary analysis and the patent-pending VicOne Vulnerability Impact Ratings (VVIRs). It is foreseeable that the end product would run on Microsoft Azure infrastructure:

  1. Microsoft Visual Studio Code and GitHub Copilot assist developers in writing secure code.
  2. GitHub Advanced Security performs secret scanning and source code analysis.
  3. VicOne xZETA delivers firmware and binary analysis with real-time vulnerability ratings.

VicOne xZETA is already available as a part of development within GitHub.

“By addressing vulnerabilities at both source and binary levels, our collaboration with VicOne sets a new standard for secure automotive software innovation,” said Dayan Rodriquez, Corporate Vice President, Manufacturing & Mobility, Microsoft. “In bringing to bear strong and unique automotive threat intelligence, this collaboration of our companies’ diverse security expertise creates a more efficient, effective and seamless workflow that enables the faster development of innovative automotive technologies while simultaneously improving vehicle safety and security.”

With AI-powered static analysis, secret scanning, and software composition analysis, GitHub Advanced Security helps developer and security teams work together to accelerate the delivery of more secure software without sacrificing productivity.

xZETA’s unique VicOne Vulnerability Impact Ratings (VVIRs) integrate external and internal insights to prioritize high-risk vulnerabilities, enabling swift identification of high-risk issues and execution of countermeasures. The complete information feeds back into Threat and Risk Assessment (TARA) results, aligning with ISO 21434, “Road vehicles — Cybersecurity engineering,” and fueling continuous monitoring.

In contrast to vulnerability management platforms that only address known open-source vulnerabilities, xZETA offers superior visibility into zero-day, undisclosed and known vulnerabilities, as well as Common Weakness Enumeration (CWE), advanced persistent threats (APTs) and ransomware. VicOne’s xZETA threat intelligence surpasses the National Vulnerability Database (NVD) by more than 189 percent, providing a wider spectrum of detection coverage.

About VicOne

With a vision to secure the vehicles of tomorrow, VicOne delivers a broad portfolio of cybersecurity software and services for the automotive industry. Purpose-built to address the rigorous needs of automotive manufacturers and suppliers, VicOne solutions are designed to secure and scale with the specialized demands of the modern vehicle. As a Trend Micro subsidiary, VicOne is powered by a solid foundation in cybersecurity drawn from Trend Micro’s 30+ years in the industry, delivering unparalleled automotive protection and deep security insights that enable our customers to build secure as well as smart vehicles. For more information, visit vicone.com.

Contacts

U.S. Media Contacts:

Vivian Kelly Interprose for VicOne
+1 703.509.5412
viviankelly@interprosepr.com

Jill Miley Interprose for VicOne
+1 303.862.0518
jill.miley@interprosepr.com

VicOne


Release Versions

Contacts

U.S. Media Contacts:

Vivian Kelly Interprose for VicOne
+1 703.509.5412
viviankelly@interprosepr.com

Jill Miley Interprose for VicOne
+1 303.862.0518
jill.miley@interprosepr.com

More News From VicOne

VicOne Research Estimates Tens of Billions in Automotive-Cyberattack Losses, Plus Rising Vulnerabilities and Growing AI, EV and Dark-Web Risks

DETROIT & TOKYO--(BUSINESS WIRE)--VicOne, an automotive cybersecurity solutions leader, today announced in-depth analysis revealing concerning signs for the global automotive industry in 2025, despite promising law-enforcement success around cybersecurity in the last year. Shifting Gears: VicOne 2025 Automotive Cybersecurity Report, which is available to download, explores the rapidly evolving landscape of automotive cybersecurity, delivering actionable insights and emerging trends and data poi...

VicOne and Trend Micro Stage Pwn2Own Automotive Zero Day Vulnerability Event to Boost Industry Cybersecurity as SDV Trend Reshapes Threat

DETROIT & TOKYO--(BUSINESS WIRE)--VicOne, an automotive cybersecurity solutions leader, today announced that it co-hosted with Trend Micro the world’s largest zero-day vulnerability discovery contest, Pwn2Own Automotive 2025, at Automotive World, which took place Jan. 22-24 in Tokyo. Top-tier security researchers performed real-world testing on cutting-edge automotive technologies, all within Trend Micro’s proven Zero Day Initiative (ZDI) platform, the world’s largest vendor-agnostic bug bounty...

VicOne at CES 2025 Showcases Award-winning Cybersecurity Portfolio and Emphasize Growing Range of Best-of-Breed Partnerships

DETROIT & TOKYO--(BUSINESS WIRE)--VicOne, an automotive cybersecurity solutions leader, today announced its activities at CES 2025, which concludes today in Las Vegas. In addition to its own award-winning, comprehensive portfolio of cutting-edge cybersecurity software and services, VicOne is showcasing its industry-leading array of partnerships. “The automotive industry is so complex; no single company can secure it alone. We're building the industry’s broadest cast of best-of-breed partners to...
Back to Newsroom