The 2014 Corvette Stingray Forum
News / Blog Register Community Calendar Today's Posts Search

Go Back   Chevrolet Corvette Stingray C7 Forum > Members Area > General Automotive + Other Cars Discussion

Reply
 
Thread Tools
Old 11-13-2013, 12:05 PM   #1
strych9
I'll be back...
 
strych9's Avatar
 
Drives: Subaru, HD Road Glide Special
Join Date: Apr 2012
Location: Omaha, NE
Posts: 3,036
Cyber Attacks to Vehicle Electronics

This is a long, but interesting read. Enjoy.

http://www.autoweek.com/article/2013...news/131019856
__________________
Bye bye, Bumblebee!
---------------------------------------------------------------------------------------
strych9 is offline   Reply With Quote
Old 11-13-2013, 12:19 PM   #2
Apex Motorsports
 
Apex Motorsports's Avatar
 
Drives: 2000 Camaro SS
Join Date: Feb 2010
Location: Louisville, Ky.
Posts: 25,165
Cyber warfare and terrorism are very serious threats. You can do as much or more damage with a few key strokes as you can with a nuke. On a smaller scale, hacking a car could be an effective way to murder/assassinate someone.
Apex Motorsports is offline   Reply With Quote
Old 11-13-2013, 12:38 PM   #3
Goober
Account Suspended
 
Drives: Camaro
Join Date: Dec 2012
Location: US
Posts: 522
That's it, I'm ripping out my On Star module. Where's my tinfoil hat damn it!
Goober is offline   Reply With Quote
Old 11-13-2013, 01:20 PM   #4
The Stig
knows 2 facts about ducks
 
The Stig's Avatar
 
Drives: ...and they're both wrong
Join Date: Aug 2009
Location: The HMS Invincible
Posts: 25,072
Quote:
Originally Posted by Goober View Post
That's it, I'm ripping out my On Star module. Where's my tinfoil hat damn it!
Onstar is actually safer than your BCM.

There are no security protocols for the BCM. If you know what PID to target and have access to the car's OBDII port (which is SO much easier now that everyone is using bluetooth modules to datalog) I can do more damage to your car than Onstar could in a lifetime.

Heck - I can kill your car battery in under 30 minutes with something but a RF transmitter and a frequency scanner. (100 Internets to anyone who knows how I do it.)


Edit: If anyone is actually interested in how this works I procured copies of the research articles the black hatters wrote regarding their work.
__________________
Click to view my build thread
The Stig is offline   Reply With Quote
Old 11-13-2013, 07:13 PM   #5
DGthe3
Moderator.ca
 
DGthe3's Avatar
 
Drives: 05 Grand Am GT
Join Date: Jul 2007
Location: Niagara, Canada
Posts: 25,366
Send a message via MSN to DGthe3
Fear mongering.

If you have to get physical access to the cars systems (via the OBDII port or otherwise), its going to be pretty hard to cause mass chaos.

Vehicles that are equipped with wireless communication technology generally don't have any electronic connections between the systems that controls a vehicle and the communication tech. The exception is On*, but that is only the vehicle slowdown feature and I'm gunna guess that there are a number of encryption and other protocols to safeguard your vehicle.
__________________
Note, if I've gotten any facts wrong in the above, just ignore any points I made with them
__________________
Originally Posted by FbodFather
My sister's dentist's brother's cousin's housekeeper's dog-breeder's nephew sells coffee filters to the company that provides coffee to General Motors......
........and HE WOULD KNOW!!!!
__________________

Camaro Fest sub-forum
DGthe3 is offline   Reply With Quote
Old 11-13-2013, 07:18 PM   #6
The Stig
knows 2 facts about ducks
 
The Stig's Avatar
 
Drives: ...and they're both wrong
Join Date: Aug 2009
Location: The HMS Invincible
Posts: 25,072
Quote:
Originally Posted by DGthe3 View Post
Fear mongering.

If you have to get physical access to the cars systems (via the OBDII port or otherwise), its going to be pretty hard to cause mass chaos.

Vehicles that are equipped with wireless communication technology generally don't have any electronic connections between the systems that controls a vehicle and the communication tech. The exception is On*, but that is only the vehicle slowdown feature and I'm gunna guess that there are a number of encryption and other protocols to safeguard your vehicle.
Onstar has them yes - but the GMLAN has zero security protocols in it. You can read and write all you want, as log as you use the proper headers.

Oh - and to drain your battery all I have to do is continually ping your TPMS sensors. They will then push the data to the CANbus.
__________________
Click to view my build thread
The Stig is offline   Reply With Quote
Old 11-13-2013, 07:24 PM   #7
Overflow
Space Shuttle Aficionado
 
Drives: 2016 Camaro 2SS
Join Date: Jun 2010
Location: Tampa, FL
Posts: 30,897
Quote:
Originally Posted by Goober View Post
That's it, I'm ripping out my On Star module. Where's my tinfoil hat damn it!
I don't know if they was suppose to be a joke or not but I laughed pretty hard at this.

Well done, sir.
Overflow is offline   Reply With Quote
Old 11-13-2013, 07:26 PM   #8
Angrybird 12
7 year Cancer Survivor!
 
Angrybird 12's Avatar
 
Drives: 17 Cruze RS, 07 G6 GT, 99 Astro
Join Date: Dec 2007
Location: East Tennessee
Posts: 21,546
They can just shoot a high energy electromagnetic pulse at your car to disable it. Knight Rider and Batman used to do it, and all the reports of alien abductions on lonely back roads have reports of it....
__________________
Cancer's a bitch! Enjoy life while you can! LIVE, LOVE, DRIVE...
The Bird is the word!
Angrybird 12 is offline   Reply With Quote
Old 11-13-2013, 07:38 PM   #9
Ringo64
Forever Pontiac
 
Drives: 2012 Black 2SS/RS
Join Date: Oct 2010
Location: Naples, FL
Posts: 1,389
As a Sr Software Engineer, I'm more worried about the driver next to me hitting me (or another outside force) and killing me than someone ruining my car through effectively hacking my car's electronics. People have been scared of everything and while yes, you are more vulnerable the more you use technology, someone just has to really be after you for them to do this or you have to really do something wrong
Ringo64 is offline   Reply With Quote
Old 11-13-2013, 07:49 PM   #10
Angrybird 12
7 year Cancer Survivor!
 
Angrybird 12's Avatar
 
Drives: 17 Cruze RS, 07 G6 GT, 99 Astro
Join Date: Dec 2007
Location: East Tennessee
Posts: 21,546
Shhh Onstar is allowing the NSA access to your car and is listening to everything you say and knows where you are...
__________________
Cancer's a bitch! Enjoy life while you can! LIVE, LOVE, DRIVE...
The Bird is the word!
Angrybird 12 is offline   Reply With Quote
Old 11-13-2013, 07:53 PM   #11
Ringo64
Forever Pontiac
 
Drives: 2012 Black 2SS/RS
Join Date: Oct 2010
Location: Naples, FL
Posts: 1,389
Quote:
Originally Posted by Angrybird 12 View Post
Shhh Onstar is allowing the NSA access to your car and is listening to everything you say and knows where you are...
Damn, this week they must of heard a lot of "GO HOME YOU STUPID SNOWBIRDS!", "LEARN TO DRIVE!", "WHY THE **BLEEEEEEEP** DID YOU ALMOST HIT ME!"
Ringo64 is offline   Reply With Quote
Old 11-13-2013, 07:53 PM   #12
The Stig
knows 2 facts about ducks
 
The Stig's Avatar
 
Drives: ...and they're both wrong
Join Date: Aug 2009
Location: The HMS Invincible
Posts: 25,072
Quote:
Originally Posted by Angrybird 12 View Post
Shhh Onstar is allowing the NSA access to your car and is listening to everything you say and knows where you are...
NSA: We Listen to You
__________________
Click to view my build thread
The Stig is offline   Reply With Quote
Old 11-13-2013, 07:56 PM   #13
The_Blur
Moderator
 
The_Blur's Avatar
 
Drives: 2018 Harley-Davidson Street Bob
Join Date: Nov 2007
Location: San Diego
Posts: 14,768
Send a message via AIM to The_Blur
I think a lot of people get worked up about this stuff, but the reality is that there are only so many spies and already plenty of bad guys to track down. They're probably not looking for you, and they certainly don't care what highway you're using to get to the office or whether you're speeding on the way.

As far as malicious hackers, I can see a disaffected teen using this for fun, but I don't think a lot of hackers would use this method of security penetration considering there's no upside. There's a lot more money in messing with ATMs and websites than there is in making people crash or turning off cars.

I imagine the best way to navigate around some of this would be to install manual features where there used to be automatic ones or to install switches to disable certain equipment unless you're actually using it. It would be easy to install an accessories power switch that pretty much turned off everything on the car by interrupting the power supply to features like OnStar, MyLink, and the OBD2 port.
__________________
RDP Motorsport//GEN5DIY//Cultrag Performance//JPSS//Rodgets Chevrolet//
Operation Demon//Buy at Invoice//RACECARWEAR
RESPECT ALL CARS. LOVE YOUR OWN.
warn 145:159 ban
The_Blur is offline   Reply With Quote
Old 11-13-2013, 08:01 PM   #14
DGthe3
Moderator.ca
 
DGthe3's Avatar
 
Drives: 05 Grand Am GT
Join Date: Jul 2007
Location: Niagara, Canada
Posts: 25,366
Send a message via MSN to DGthe3
Quote:
Originally Posted by The Stig View Post
Onstar has them yes - but the GMLAN has zero security protocols in it. You can read and write all you want, as log as you use the proper headers.

Oh - and to drain your battery all I have to do is continually ping your TPMS sensors. They will then push the data to the CANbus.
If the wireless hack can't control the car (as in throttle, steering, and brakes), its never going to amount to anything more than an annoyance. And if it takes physical access to actually be able to control the car it can never be widespread. So the doomsday scenario that the article where hundreds of cars in one city all go out of control at the same time is fiction.

A dead battery tends to not be a dangerous event, usually it just means that your car won't start. An annoyance, nothing more. Get a boost & off you go, as I'd be shocked if a running car were unable to cope with continuous data sent from the TPMS.
__________________
Note, if I've gotten any facts wrong in the above, just ignore any points I made with them
__________________
Originally Posted by FbodFather
My sister's dentist's brother's cousin's housekeeper's dog-breeder's nephew sells coffee filters to the company that provides coffee to General Motors......
........and HE WOULD KNOW!!!!
__________________

Camaro Fest sub-forum
DGthe3 is offline   Reply With Quote
Reply


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT -5. The time now is 05:30 AM.


Powered by vBulletin® Version 3.8.9 Beta 4
Copyright ©2000 - 2026, vBulletin Solutions, Inc.