Summary is AI-generated, newsdesk-reviewed
  • ONEKEY integrates VEX data for streamlined cybersecurity management, enhancing transparency in digital supply chains.
  • Automation reduces vulnerability assessment workload, boosting compliance with the EU Cyber Resilience Act.
  • Faster vulnerability tracking and reporting with ONEKEY improves product certification and competitive advantage.

ONEKEY, a cybersecurity firm based in Düsseldorf, has enhanced its platform capabilities, transforming it from a tool primarily used to identify software vulnerabilities to a comprehensive system designed for vulnerability management.

This expanded platform allows organisations to manage the full lifecycle of Common Vulnerabilities and Exposures (CVEs) by facilitating their detection, assessment, and documentation within a unified workflow.

Adapting to increasing vulnerabilities

The escalation in reported vulnerabilities, which saw a 38% rise with over 40,000 new CVEs in 2024, has complicated the process for manufacturers in keeping abreast of product-specific vulnerabilities.

To address this complexity, ONEKEY has integrated VEX (Vulnerability Exploitability eXchange) data into its security platform, enhancing compliance and transparency across the digital supply chain.

Automated risk assessment

ONEKEY's new feature allows organisations to substantiate that not every vulnerability presents a risk, thus facilitating the documentation process in a standardised format.

This integration supports automated workflows, enabling faster and more precise management of vulnerabilities, leaving manual evaluations behind.

Regulatory compliance and competitive edge

The introduction of this technology aligns perfectly with the forthcoming EU Cyber Resilience Act, which mandates that manufacturers bolster and document their products' defenses against cyber threats by 2027.

The expanded capabilities of the ONEKEY platform offer a strategic advantage, ensuring products meet these evolving legal standards.

Benefits of standardised data

This enhancement will reduce the frequency of compliance-related queries while streamlining certification processes

This enhancement will reduce the frequency of compliance-related queries while streamlining certification processes due to its automated documentation of vulnerabilities.

By catering to the increasing demands for transparency within the supply chain, ONEKEY assists manufacturers in focusing on strategic initiatives rather than administrative responsibilities.

Jan Wendenburg, CEO of ONEKEY, articulated, "We want to give our customers the opportunity not only to find vulnerabilities, but also to prove that their products are secure." The newly integrated risk assessment tools foster a shift from traditional vulnerability detection towards complete management and prioritisation.

Strategies for digital manufacturers

The rise in CVEs requires digital product manufacturers to adopt structured and automated management practices, as discussed by Wendenburg. ONEKEY's strategy aims to cater to these needs, transitioning the platform from vulnerability detection to comprehensive management.

Comprehensive compliance and security

ONEKEY is recognised as a specialist in product cybersecurity and compliance management in Europe, providing a platform that combines automated analysis with expert advice. This ensures rigorous examination and management of product cybersecurity from design to obsolescence.

Leveraging AI technology

Utilising AI-driven solutions, ONEKEY detects critical vulnerabilities within device firmware swiftly, even without source code access.

The platform's capabilities, such as generating Software Bills of Materials and continuous monitoring with "Digital Cyber Twins," position it as a robust solution for managing cybersecurity threats throughout a product's lifecycle.

ONEKEY's integrated Compliance Wizard addresses numerous regulatory standards, including the EU CRA. This tool aids the Product Security Incident Response Team in prioritising vulnerabilities, thereby expediting the remediation process.

Global companies across Asia, Europe, and the Americas are already leveraging the benefits of the ONEKEY platform, coupled with the expertise of ONEKEY Cybersecurity Experts, to enhance their cybersecurity and compliance measures.

Discover how AI, biometrics, and analytics are transforming casino security

In case you missed it

Which vertical markets have the greatest growth potential for security?
Which vertical markets have the greatest growth potential for security?

To serve various vertical markets and industries effectively, security professionals must recognise that each sector has unique assets, risks, compliance requirements, and operatio...

Marin Hospital enhances security with eCLIQ access control
Marin Hospital enhances security with eCLIQ access control

The Marin Hospital of Hendaye in the French Basque Country faced common challenges posed by mechanical access control. Challenges faced Relying on mechanical lock-and-key technol...

What’s behind (perimeter) door #1?
What’s behind (perimeter) door #1?

A lot has been said about door security — from reinforced door frames to locking mechanisms to the door construction — all of which is crucial. But what security measur...