Brokenwire Hack’s Disruption of Charging of Electric Vehicles
April 4, 2022Researchers from the University of Oxford and Armasuisse Science and Technology (S+T) discovered an attack method that would work against the Combined Charging System (CCS) and disrupt the ability of electric vehicles to charge at scale.
Charging Port Opener Attack
March 27, 2022A hacker who goes by the name NotPike on Twitter revealed how they were able to conduct a replay attack on Tesla’s charging ports. This was because the ports use 315 MHz as their standard signal to open ports, which can be replayed to open charging ports.
Vulnerability in Remote Keyless Systems
March 24, 2022Ayyappan Rajesh submitted a proof of concept for CVE-2022-27254 and showed how the keyless systems of different Honda vehicles send the same unencrypted radio frequency (RF) signal for commands like opening a car door and starting the engine remotely. This could allow threat actors to conduct a replay attack.
Cuba Ransomware’s Attack on Automotive Parts Manufacturer
March 19, 2022The Cuba ransomware group, known for targeting critical infrastructures, claimed to have gone after Hyundai’s automotive parts manufacturer, Hyundai Powertech.
Rook Ransomware’s Attack on Automotive Parts Company
March 13, 2022Various reports show how cybercriminals have been targeting suppliers for major car manufacturers like Toyota. For example, the Rook ransomware group announced that it had attacked Denso, one of the largest automotive parts suppliers in Japan.
LockBit Ransomware’s Attack on Tire Manufacturing Company
February 27, 2022Bridgestone, one of the largest and best-known tire manufacturing corporations in the US, confirmed its having been hit with the LockBit ransomware. The LockBit ransomware gang took credit for the attack and threatened to publish Bridgestone data.
Freezing of Infotainment Systems via Radio Signal
February 26, 2022A signal from a local NPR station bricked the infotainment systems of certain Mazda vehicles manufactured from 2014 to 2017. The signal turned out to be image files sent by the station on its HD radio stream, which the systems were unable to process.
Ransomware Attack on Automotive Manufacturing Company
February 26, 2022Toyota’s partner and manufacturer of interior and exterior automotive components, Kojima Industries, was reportedly targeted by a ransomware campaign. Toyota had to shut down operations on 14 of its plants in Japan because of the attack.
Remote Attack Through a Bug
January 13, 2022David Colombo, a young hacker and security researcher, successfully interacted with more than 25 Tesla vehicles in 13 different countries. Through a bug, he was able to access a great deal of information about these vehicles and even run remote commands.
Log4j Vulnerabilities in Connected Cars and Charging Stations
December 23, 2021In his report, Sébastien Dudek looked into the possibility of attackers using the Log4j vulnerabilities in the automotive world, specifically to gain access to devices used in cars and car chargers.
Connected Car Vulnerabilities Affecting the CAN Standard
August 16, 2017Andrea Palanca, Eric Evenchick, Federico Maggi, and Stefano Zanero tested a vendor-neutral attack that could target connected cars and abuse CAN (Controller Area Network), the network protocol that connects all in-vehicle equipment and systems and allows them to communicate.
Ransomware-Like Attack on a Connected Car
October 1, 2016Kenney Lu and Spencer Hsieh wanted to see if it was possible to hold a car for ransom. By targeting the in-vehicle infotainment (IVI) system, they were able to simulate a ransomware-like scenario, where a fake update eventually led to the vehicle’s being compromised.