Car Security Experts Dump All Their Research and Vulnerabilities Online

[Charlie Miller] and [Chris Valasek] Have just released all their research including (but not limited to) how they hacked a Jeep Cherokee after the newest firmware updates which were rolled out in response to their Hacking of a Cherokee in 2015.

FCA, the Corp that owns Jeep had to recall 1.5 million Cherokee’s to deal with the 2015 hack, issuing them all a patch. However the patch wasn’t all that great it actually gave [Charlie] and [Chris] even more control of the car than they had in the first place once exploited. The papers they have released are a goldmine …read more

Continue reading Car Security Experts Dump All Their Research and Vulnerabilities Online

Hyundai Patches Leaky Blue Link Mobile App

Hyundai Motor America patched its Blue Link mobile app after researchers found a cleartext encryption key that could be use to expose user and vehicle information. Continue reading Hyundai Patches Leaky Blue Link Mobile App

Patched Flaw in Bosch Diagnostic Dongle Allowed Researchers to Shut Off Engine

Two vulnerabilities were identified in Bosch’s Drivelog Connect OBD-II dongle and smartphone app that allowed researchers to shut off the engine of a vehicle. Continue reading Patched Flaw in Bosch Diagnostic Dongle Allowed Researchers to Shut Off Engine

Patched Flaw in Bosch Diagnostic Dongle Allowed Researchers to Shut Off Engine

Two vulnerabilities were identified in Bosch’s Drivelog Connect OBD-II dongle and smartphone app that allowed researchers to shut off the engine of a vehicle. Continue reading Patched Flaw in Bosch Diagnostic Dongle Allowed Researchers to Shut Off Engine

Will the IoT force truck stops?

“Not with a bang, but with a whimper,” that was how T.S. Eliot described how the world would end, in his 1925 poem “The Hollow Men.” Things don’t always end in cataclysm; sometimes they just… stop, which might seem awfully prophetic in a few years… One of the more interesting topics for conversation at RSA Conference 2017 in San Francisco this year was the IoT and the next generation of ransomware. After all, if you … More Continue reading Will the IoT force truck stops?

Reverse Engineering the Smart ForTwo CAN Bus

The CAN bus has become a defacto standard in modern cars. Just about everything electronic in a car these days talks over this bus, which makes it fertile ground for aspiring hackers. [Daniel Velazquez] is striking out in this area, attempting to decode the messages on the CAN bus of his Smart ForTwo.

[Daniel] has had some pitfalls – first attempts with a Beaglebone Black were somewhat successful in reading messages, but led to strange activity of the car and indicators. This is par for the course in any hack that wires into an existing system – there’s a high …read more

Continue reading Reverse Engineering the Smart ForTwo CAN Bus

First Look: Macchina M2

In the past few years, we’ve seen a growth in car hacking. Newer tools are being released, which makes it faster and cheaper to get into automotive tinkering. Today we’re taking a first look at the M2, a new device from the folks at Macchina.

The Macchina M1 was the first release of a hacker friendly automotive device from the company. This was an Arduino compatible board, which kept the Arduino form factor but added interface hardware for the protocols most commonly found in cars. This allowed for anyone familiar with Arduino to start tinkering with cars in a familiar …read more

Continue reading First Look: Macchina M2

Consortium Publishes Manifesto on Autonomous Vehicle Security

A new industry consortium publishes a manifesto it hopes will foster cooperation on the security of autonomous vehicles. Continue reading Consortium Publishes Manifesto on Autonomous Vehicle Security

Bill Calls for Study of Cybersecurity Standards for Cars

A bipartisan bill was introduced this week in the House calling for the NHTSA to conduct a study that would determine appropriate cybersecurity standards for motor vehicles. Continue reading Bill Calls for Study of Cybersecurity Standards for Cars