New Report Finds Auto Cyber Is A Dumpster Fire
ID: 33300fb8-676a-5b5b-bcb1-7702597e431a
STIX ID: report--33300fb8-676a-5b5b-bcb1-7702597e431a
Feed Name: Security Ledger
Researchers led by Sam Curry published findings showing critical security flaws in web-based telematics and mobile app infrastructures used by major automakers and suppliers (including Mercedes-Benz, Kia, Honda, Nissan, Spireon/SiriusXM and others). The flaws allowed low-skill, remote access to vehicle controls (lock/unlock, start/stop, horn, trunk), live camera feeds, GPS location, and in at least one case full administrator access to a platform capable of sending commands to an estimated 15.5 million vehicles; issues were attributed to misconfigured APIs and staging/debug code left in production, and vendors reported remediation efforts.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
