Monday, January 30, 2023
Aroged
  • Home
  • Games
  • Technology
  • Sports
No Result
View All Result
  • Home
  • Games
  • Technology
  • Sports
No Result
View All Result
Aroged
No Result
View All Result
Home Technology

Car manufacturers’ mobile apps have serious security flaws that put drivers at risk

Aroged by Aroged
December 6, 2022
in Technology
Mobilne aplikacije proizvođača automobila imaju ozbiljne bezbednosne propuste koji ugrožavaju bezbednost vozača
0
SHARES
1
VIEWS
Share on FacebookShare on Twitter

News, 06.12.2022, 12:00 PM

Car manufacturers' mobile apps have serious security flaws that put drivers at risk

A car’s mobile app can allow hackers to remotely unlock the vehicle, turn the engine on or off, and even honk the horn.

These are the findings of Sam Curry, a security researcher and bug hunter, who investigated vulnerabilities that could affect vehicles from Hyundai, Genesis, Nissan, Infiniti, Honda and Acura, among others.

Kari and his colleagues first turned their attention to the official mobile apps used by Hyundai and Genesis vehicle owners, which allow authenticated users to start, stop, lock and unlock their cars.

U a series of tweetsKari showed how he was able to exploit flaws in the Hyundai app to bypass checks and remotely unlock the vehicle knowing only the car owner’s email address, eventually taking over his account entirely.

Later it turned out that the same risk exists for owners of Genesis vehicles.

Kari informed Hyundai and Genesis about his discovery.

A Hyundai spokesperson said that “apart from the Hyundai vehicles and accounts belonging to the researchers themselves, the investigation showed that no one else accessed any vehicles or customer accounts…”

Possibly emboldened by the revelation regarding the Hyundai and Genesis vehicles, Curry continued to investigate vulnerabilities affecting other manufacturers, particularly those that used the SiriusXM Connected Vehicle Services telematics platform.

As Kari explained, unauthorized persons were able to send commands to Nissan, Infiniti, Honda and Acura vehicles, knowing only the vehicle identification number (VIN).

Even if a particular car was no longer actively subscribed to SiriusXM, Kari found he was able to sign it up for the service simply by knowing the VIN, which is usually visible through the car’s windshield.

Using this technique, cars can be remotely stopped or started, locked or unlocked, their headlights turned on or their horns sounded. Even the owner’s personal information (name, phone number, address and car details) can be extracted without permission.

Kari also noted that he can add or remove vehicle owners from the service at will.

Fortunately, as a responsible security researcher, Kari notified the relevant manufacturers of the issue, allowing them to patch the vulnerability before the details were made public.

Apps should make the life of drivers easier, without reducing their safety. We can only hope that car manufacturers will take care of this in the future.

Tags: appscardriversflawsmanufacturersMobileputrisksecurity

Related Posts

evoBOT, the favorite wheeled robot for laborers
Technology

evoBOT, the favorite wheeled robot for laborers

by Aroged
January 30, 2023
From Crysis and Windows Vista (PCGH-Retro, January 30th)
Technology

From Crysis and Windows Vista (PCGH-Retro, January 30th)

by Aroged
January 29, 2023
Totobola |  Discover the winning key of Contest nº 05/2023
Technology

Totobola | Discover the winning key of Contest nº 05/2023

by Aroged
January 29, 2023
Aroged: Aeroflot plans to increase the share of domestic aircraft in the fleet to 70% by 2030
Technology

Aroged: Aeroflot plans to increase the share of domestic aircraft in the fleet to 70% by 2030

by Aroged
January 29, 2023
WLAN routers: These are test winners, price tips and alternatives
Technology

WLAN routers: These are test winners, price tips and alternatives

by Aroged
January 29, 2023
Next Post
An insider hinted at the imminent announcement of additions for Horizon Forbidden West

An insider hinted at the imminent announcement of additions for Horizon Forbidden West

PS5: the 5 games to watch in December 2022

PS5: the 5 games to watch in December 2022

MEO, NOS and Vodafone without Huawei equipment on 5G networks in Portugal

MEO, NOS and Vodafone without Huawei equipment on 5G networks in Portugal

Xiaomi 12T Pro: the ultimate in power and photography at an unbeatable price

Xiaomi 12T Pro: the ultimate in power and photography at an unbeatable price

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

I agree to the Terms & Conditions and Privacy Policy.

Premium Content

Official Microsoft controllers for Xbox and PC still drop in price on Amazon

Official Microsoft controllers for Xbox and PC still drop in price on Amazon

October 20, 2022
Xbox Series X : la console de Microsoft est de retour en rayon, c’est maintenant ou jamais !

Xbox Series X: Microsoft’s console is back on the shelves, it’s now or never!

November 25, 2022
Sapphire is preparing to release the video card Radeon RX 7900 XT/XTX Nitro

Sapphire is preparing to release the video card Radeon RX 7900 XT/XTX Nitro

November 24, 2022

Browse by Category

  • Games
  • Sports
  • Technology
  • Uncategorized

Browse by Tags

Amazon AMD Announced Apple Aroged Black Call Coming Cup date Football Free Friday Game gameplay games gaming God Match Microsoft news Nintendo NVIDIA online Pass PlayStation Price Pro PS5 release released RTX Samsung Season Series Steam Switch trailer Update video war Watch World Xbox year
Aroged

News Around World And News About Business, Entertainment, Fashion, Food, Games News, Health, PC Portables, Telecomtalk, Sports, Make Money Online and more all on one platform.

Categories

  • Games
  • Sports
  • Technology
  • Uncategorized

Browse by Tag

Amazon AMD Announced Apple Aroged Black Call Coming Cup date Football Free Friday Game gameplay games gaming God Match Microsoft news Nintendo NVIDIA online Pass PlayStation Price Pro PS5 release released RTX Samsung Season Series Steam Switch trailer Update video war Watch World Xbox year

Recent Posts

  • Mercedes-Benz DRIVE PILOT became the first level 3 autopilot certified for use on US roads
  • Crafted fake or real? Marvel’s Spider-Man 2 live-action promotional video confirms fall release
  • VIDEO. Serie A. Napoli beat the Especial team, shame on Milan and Juventus
  • About Us
  • Privacy Policy
  • Terms and Conditions

© Aroged 2023. All Rights Reserved.

No Result
View All Result
  • Home
  • Games
  • Technology
  • Sports

© Aroged 2023. All Rights Reserved.

This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.