FINESSE Workshop at the advanced TrainLab.

Workshop and Testing Under Real Operating Conditions

Modern rail vehicles are networked systems with complex communication structures. This connectivity brings efficiency gains but also creates new attack opportunities. The FINESSE project develops solutions for these challenges and recently conducted a workshop with test runs at the Advanced Train Lab (aTL) in Scheibenberg.

Representatives from all FINESSE partners came together: DB Systemtechnik (Andreas Isbarn), ETAS (Jens Gramm), Fraunhofer SIT (Christian Plapper), INCYDE (Sofian Beyer), University of Passau (Simon Unger), and Yekta IT (Ali Recai Yekta, Cenk Yekta).

Sofian Beyer (INCYDE) presented the developed MVB attacker hardware, which enables attacks on the Multifunction Vehicle Bus (MVB) protocol. The MVB connects all critical components of a train – from brakes to door control. Vulnerabilities in this system have direct impacts on operational safety.

Ali Recai Yekta and Cenk Yekta (Yekta IT) presented two central components of the FINESSE security architecture: the Y-MVB-IDS, an Intrusion Detection System that detects suspicious activities in the vehicle network in real-time, and the Vehicle Security Operations Center (VSOC), which coordinates security incidents and initiates appropriate responses. In tests involving targeted signal manipulations on the MVB, the Y-MVB-IDS detected the attacks and the VSOC processed the resulting alarms.

The combination of attack simulation and protective measures enables realistic threat assessment. Only by understanding attack methods can effective defense strategies be developed. Test runs in the Advanced Train Lab demonstrated how important validation under real conditions is.

Cyberattacks on critical infrastructures are increasing. Rail vehicles must implement preventive security measures before attacks lead to disruptions or safety problems. The FINESSE project addresses this issue and makes research results available through publications and conferences.