NHTSA Has Reviewed Vehicle Cybersecurity Standards

The federal agency is updating guidance to address new risks from artificial intelligence in connected vehicles.

Updated on Oct. 8, 2026 in Cybersecurity

Isometric editorial illustration showing a complex vehicle chassis with exposed electrical wiring and network infrastructure, representing automotive security policy.
The National Highway Traffic Safety Administration has begun reviewing its vehicle cybersecurity standards to address emerging threats from AI-assisted digital attacks. AI Illustration. Upload story photo >

Live Poll

Are you concerned that modern vehicle technology makes your car more vulnerable to cyberattacks?

The National Highway Traffic Safety Administration has launched a review of its cybersecurity best practices to mitigate threats from AI-assisted attacks. Administrator Jonathan Morrison announced the initiative at an industry summit in Michigan.

Why it matters

As vehicles become increasingly dependent on cloud back ends, over-the-air updates, and electric charging networks, the surface area for potential cyberattacks has expanded. New guidance is required to ensure that rapid integration of AI and connected systems does not compromise vehicle safety.

Machine learning tools are being promoted to reduce the cost of identifying software vulnerabilities. Researchers have already documented instances where agents can escape sandboxes and reach critical production systems.

The players

Jonathan Morrison

He serves as the administrator for the National Highway Traffic Safety Administration.

National Highway Traffic Safety Administration

This federal agency is responsible for maintaining safety standards for motor vehicles in the United States.

Automotive Information Sharing and Analysis Center

This organization facilitates the sharing of cybersecurity threat intelligence within the automotive industry.

The details

NHTSA officials are analyzing how to secure modern vehicle architectures, including infotainment units and aftermarket devices, against evolving digital threats. While no real-world cyberattack has yet successfully compromised vehicle safety, a March 2026 attack on a breathalyser company prevented users from operating their cars.

Timeline

  1. A cyberattack on a breathalyser firm occurred in March 2026.

  2. Jonathan Morrison spoke at a summit in Novi, Michigan, on 7 October 2026.

  3. NHTSA will present research on offensive cybersecurity models in December 2026.

The Tech Race

This effort aligns with the trajectory established by the Automotive Information Sharing and Analysis Center to foster industry-wide cybersecurity collaboration. The shift emphasizes moving beyond legacy defensive measures to address the systemic risks posed by artificial intelligence and hyper-connected vehicle ecosystems.

Drivers may see future vehicle updates designed to improve the security of infotainment and anti-theft systems. These changes aim to prevent unauthorized access to vehicle controls while maintaining the convenience of over-the-air software updates.

The takeaway

Automakers are encouraged to adopt defensive machine learning tools to proactively hunt for software flaws before they can be exploited. Prioritizing robust encryption and securing the expanding vehicle attack surface remains essential for long-term passenger safety.

Further reading

Learn more about the latest industry standards and regulatory developments at Cybersecurity.

Source note: This article includes information reported by Automotive World.

Live Poll

Are you concerned that modern vehicle technology makes your car more vulnerable to cyberattacks?