Identification of Security Requirements and Assumptions for the “EVerest” Software

  • Partner:

    Pionix GmbH

Security-related work is often highly confidential, making extensive case studies difficult for researchers to access. We collaborated with Pionix GmbH, the initiator of the open-source EVerest project for electric vehicle charging stations. As part of the cooperation, security requirements for EVerest were elicited, and the software architecture was derived from the codebase. The requirements, architecture, documentation, and code were compiled into an extensive labeled dataset. Based on this dataset—currently under submission—, security analyses were executed, leading to the identification of a weakness that was subsequently reported and fixed.