logo

Hackers exploit 29 zero-days on second day of Pwn2Own Automotive

ID: 3d5a25bc-a3e8-518f-bce8-60cb89ce8054

STIX ID: report--3d5a25bc-a3e8-518f-bce8-60cb89ce8054

Feed Name: Bleeping Computer

Threat Score
50/100

Date Published: 2026-01-22

Date Updated: 2026-04-20

Author: Sergiu Gatlan

...
...

Pwn2Own Automotive 2026 in Tokyo featured security researchers exploiting dozens of zero-day vulnerabilities across EV chargers, in-vehicle infotainment systems, and automotive OSes, earning hundreds of thousands in cash awards; the article lists winning teams, targeted devices (e.g., Phoenix Contact CHARX SEC-3150, ChargePoint Home Flex, Grizzl-E Smart 40A, Automotive Grade Linux), and links to ZDI coverage, noting vendors have 90 days to patch disclosed flaws.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.