Aviation: Secure Flight Control Systems
Industry: Aviation
RunSafe Security provides a patented code protection solution designed to protect military and commercial flight control systems from memory-based vulnerabilities that could be exploited to alter the behavior of critical flight controls, like ailerons, elevators, or rudders. With RunSafe Protect, aerospace vendors are able to protect embedded systems in avionics that are critical to the safe and reliable operation of aircraft without rewriting code.
RunSafe Protect is on the path to becoming the first-of-its-kind cybersecurity solution to achieve Safety of Flight certifiability under DO-178C standards, ready for inclusion in Design Assurance Level A (DAL-A) systems by the end of 2025. In addition, RunSafe and Lynx have partnered to provide the industry’s first DAL-A-certified, memory-safe RTOS platform, uniting safety, security, and operational efficiency in a single solution.
Challenge
Aviation systems face persistent threats from adversaries targeting memory-based vulnerabilities in flight-critical software. A single exploit in components like flight control computers, engine controllers, or navigation systems can compromise command integrity, degrade combat effectiveness, or cause catastrophic failure. Legacy code, long certification cycles, and constrained update processes increase risk by limiting rapid patching or revalidation of safety-certified systems. As adversaries accelerate zero-day exploitation, protecting avionics at the binary level has become essential to maintaining aircraft survivability, mission continuity, and safety of flight.
“From our perspective, adding RunSafe means we have more opportunity to shrink the attack surface and reduce overall risks for our customers since security is now already built into our product.”
Key Features:
Automated mitigation and code protection
Minimized Attack Surfaces
Seamless
Integration
Futureproof from Zero Days
Solution
RunSafe offers a cybersecurity solution designed to secure flight control systems through code protection, runtime resilience, and software supply chain visibility.
Key features of RunSafe’s solution include:
- Automated mitigation and code protection: Prevents exploitation of memory-based vulnerabilities.
- Build-time Software Bill of Materials (SBOM): Generates a comprehensive inventory of applications, libraries, and dependencies for C/C++ builds.
- Automated vulnerability identification: Detects and quantifies vulnerabilities in aviation software to support risk-based mitigation decisions.
- Continuous protection for flight control systems: Applies Load-time Function Randomization to safeguard against memory safety vulnerabilities and future zero days.
- Seamless integration with LynxOS-178: Through collaboration with Lynx, RunSafe’s technology integrates into Lynx’s DO-178C DAL-A certified RTOS, maintaining certifiability while enhancing security posture.
Examples
Protecting flight control software: Emergent integrated RunSafe Security to protect its flight control software so that its customers can extend the life of products that are difficult to update and maintain after launch.
Code protection without slowing down development: For GE Aerospace’s dual-use FADEC engine controller, RunSafe deployed code protection without slowing down developers, with no change in system behavior, and no impact on runtime performance.
Enhanced cybersecurity through collaboration: RunSafe’s partnership with Lynx enhances cybersecurity for avionics and other critical aviation systems. The joint effort seamlessly integrates RunSafe Protect technology into DO-178C DAL-A-certifiable environments, providing Safety of Flight-level cybersecurity for both commercial and defense aviation applications.
Latest Resources
What Is Vulnerability Mitigation? Why Patching Alone Is Not Enough
Vulnerability mitigation is the process of reducing the likelihood that a security weakness will be exploited or limiting the damage that exploitation could cause. Mitigation protects an organization when a vulnerability cannot be immediately eliminated, including...
Securing 700,000 Endpoints: Former Air Force CIO on Scale, Cyber Resilience, and AI
Key takeaways Compliance is only a starting point. At scale, training and audits can't outpace the threat. Know what you have first. Inventory the enterprise, then secure the top missions. Manage as an enterprise. One consolidated Cisco contract saved ~$300M and...
The Responsibility Never Sits with the Machine: AI in the Automotive Industry
Key takeaways AI in the automotive industry now sits in three distinct places: inside the product, inside the development pipeline, and inside the decisions engineers make. Each carries a different risk profile. Established, narrow-scope AI, such as driver monitoring,...



