Abstract
Attack surfaces are increasing as products are increasingly more connected. This has been acknowledged by the European Commission in their Europe: fit for the digital age strategy and in recent legislative proposals. Most importantly, the proposed Cyber Resilience Act (CRA) sets minimum cybersecurity requirements for products with digital elements. These requirements range from effective and regular tests to the dissemination of free security updates in case of a cybersecurity breach. This should ensure a base level of cybersecurity throughout the product’s lifetime. Unfortunately, there is a catch: not all products with digital elements fall within the scope of the proposed CRA. For instance, vehicles are not subject to the proposed Act. The exclusion of this category of products with digital elements seems to be based on the premise that ‘the sectoral rules achieve the same level of protection as the one provided for by this Regulation’ (recital 14). This contribution is challenging this premise, as it explores the level of cybersecurity as laid down in the proposed CRA and compares it to the level of cybersecurity ensured by the sectoral rules in vehicle regulation. Could this mean that your smartphone is going to be more cybersecure than your car?
| Original language | English |
|---|---|
| Journal | The European Journal of Law and Technology |
| Volume | 16 |
| Issue number | 1 |
| Publication status | Published - 30 Jun 2025 |
UN SDGs
This output contributes to the following UN Sustainable Development Goals (SDGs)
-
SDG 09 Industry, Innovation, and Infrastructure
-
SDG 16 Peace, Justice and Strong Institutions
Keywords
- cybersecurity
- cyber resilience act
- automated driving
Research Focus Areas Hanze University of Applied Sciences * (mandatory by Hanze)
- Entrepreneurship
- Healthy Ageing
Research Focus Areas Research Centre or Centre of Expertise * (mandatory by Hanze)
- Digital Transformation
Publinova themes
- Economics and Management
- ICT and Media
- Health
- People and Society
- Law
- Technology
Projects
- 1 Finished
-
Cybersecurity Noord-Nederland
Groenboom, R. (PI), Oden, P. (PI), Hof, J. (CoI) & Mulder, T. (PI)
1/09/19 → 30/06/25
Project: Research
Research output
- 1 Abstract
-
Under Attack: The Discrepancy between Cybersecurity Regulation and Vehicle Regulation
Vellinga, N. (First author) & Mulder, T., 6 Dec 2023, (Submitted). 1 p.Research output: Contribution to conference › Abstract › Academic
File
Activities
- 1 Oral presentation
-
Bileta Annual Conference 2024
Mulder, T. (Speaker) & Vellinga, N. (Speaker)
18 Apr 2024 → 19 Apr 2024Activity: Talk or presentation › Oral presentation
Cite this
- APA
- Author
- BIBTEX
- Harvard
- Standard
- RIS
- Vancouver