Share

Hacking experts build car cyber security

Boston - Two security experts who a year ago exposed methods for hacking the Toyota Prius and Ford Escape say they have developed technology that would keep automobiles safe from cyber attacks.

At last year's Def Con hacking conference in Las Vegas, the two researchers, Chris Valasek and Charlie Miller, described ways to launch dangerous attacks, including manipulating the brakes of the moving Prius and the Ford Escape.

Valasek said on Tuesday that he and Miller will show off a prototype vehicle "intrusion prevention device" at next month's Black Hat hacking conference in Las Vegas.

They built the device with about $150 in electronics parts, though the real "secret sauce" is a set of computer algorithms that listen to traffic in a car's network to understand how things are supposed to work. When an attack occurs, the device identifies traffic anomalies and blocks rogue activity, Valasek said.

The two well-known computer experts decided to pursue the project because they wanted to help automakers identify ways to defend against security vulnerabilities in their products.

"I really don't care if you hack my browser and steal my credit card," Valasek said. "But crashing a car is life or death. It is dramatic. We wanted to be part of the solution."

Risk

The research the two have released on the Ford and Toyota cars, as well as work by other experts on different types of vehicles, has raised concerns that somebody might one day try to replicate their work to launch a real-life attack.

Yet the US National Highway Traffic Safety Administration said in a statement on Tuesday that it is not aware of any incidents of consumer vehicle control systems having been hacked.

The auto industry has beefed up efforts to identify and mitigate potential cyber security risks over the past few years.

"Cyber security is a global concern and it is a growing threat for all industries, including the automotive," said Jack Pokrzywa, manager of global ground vehicle standards with SAE International, a group that represents industry engineers.

Pokrzywa declined to comment on the specifics of the new technology from Valasek and Miller, though he said: "Any viable solution reducing cyber threats is a step in the right direction."

A representative for Ford said she had no immediate comment on the device. Officials with Toyota could not be reached for comment.
We live in a world where facts and fiction get blurred
Who we choose to trust can have a profound impact on our lives. Join thousands of devoted South Africans who look to News24 to bring them news they can trust every day. As we celebrate 25 years, become a News24 subscriber as we strive to keep you informed, inspired and empowered.
Join News24 today
heading
description
username
Show Comments ()
Rand - Dollar
18.89
+0.2%
Rand - Pound
23.83
+0.3%
Rand - Euro
20.36
+0.3%
Rand - Aus dollar
12.31
+0.3%
Rand - Yen
0.12
+0.2%
Platinum
908.05
0.0%
Palladium
1,014.94
0.0%
Gold
2,232.75
-0.0%
Silver
24.95
-0.1%
Brent Crude
87.00
+1.8%
Top 40
68,346
0.0%
All Share
74,536
0.0%
Resource 10
57,251
0.0%
Industrial 25
103,936
0.0%
Financial 15
16,502
0.0%
All JSE data delayed by at least 15 minutes Iress logo
Company Snapshot
Editorial feedback and complaints

Contact the public editor with feedback for our journalists, complaints, queries or suggestions about articles on News24.

LEARN MORE
Government tenders

Find public sector tender opportunities in South Africa here.

Government tenders
This portal provides access to information on all tenders made by all public sector organisations in all spheres of government.
Browse tenders