OBD-II Dongle Attack: Stopping a Moving Car via Bluetooth

Researchers from the Argus Research Team found a way to hack into the Bosch Drivelog ODB-II dongle and inject any kind of malicious packets into the CAN bus. This allowed them to, among other things, stop the engine of a moving vehicle by connecting to the dongle via Bluetooth.

Drivelog is Bosch’s smart device for collecting and managing your vehicle’s operating data. It allows a user to connect via Bluetooth to track fuel consumption and to be alerted when service is necessary. It was compromised in a two stage attack. The first vulnerability, an information leak in the authentication process, …read more

Continue reading OBD-II Dongle Attack: Stopping a Moving Car via Bluetooth

Mutual Authentication, Session Management and Data encryption on Embedded System [on hold]

We are developing an embedded system which communicates with patient monitor system.

The embedded system runs on Keil RTX RTOS.

THe mode of communication between the embedded system and the patient monitor is Bluetooth.

O… Continue reading Mutual Authentication, Session Management and Data encryption on Embedded System [on hold]

Burglars can easily make Google Nest security cameras stop recording

Google Nest’s Dropcam, Dropcam Pro, Nest Cam Outdoor and Nest Cam Indoor security cameras can be easily disabled by an attacker that’s in their Bluetooth range, a security researcher has found. The vulnerabilities are present in the latest firmware version running on the devices (v5.2.1). They were discovered by researcher Jason Doyle last fall, and their existence responsibly disclosed to Google, but have still not been patched. The vulnerabilities The first two flaws can be … More Continue reading Burglars can easily make Google Nest security cameras stop recording