home.social

#automotivesecurity — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #automotivesecurity, aggregated by home.social.

fetched live
  1. Kaspersky has identified a new malware family targeting Android car head units from DoFun. The malware abuses built-in OTA updaters to deploy ad fraud toolkits and proxy botnet infrastructure.

    #SupplyChainAttack #ProxyBotnet #AutomotiveSecurity #AdFraud

    cyberworldops.eu/en/malware-in

  2. CAN Bus Explained: The Complete Guide to Automotive Networking, Arbitration, Error Handling, and Security

    Learn everything about CAN Bus (Controller Area Network), including architecture, frame structure, arbitration, CAN FD, error handling, security etc

    thecybersecguru.com/glossary/c

  3. CAN Bus Explained: The Complete Guide to Automotive Networking, Arbitration, Error Handling, and Security

    Learn everything about CAN Bus (Controller Area Network), including architecture, frame structure, arbitration, CAN FD, error handling, security etc

    thecybersecguru.com/glossary/c

  4. CAN Bus Explained: The Complete Guide to Automotive Networking, Arbitration, Error Handling, and Security

    Learn everything about CAN Bus (Controller Area Network), including architecture, frame structure, arbitration, CAN FD, error handling, security etc

    thecybersecguru.com/glossary/c

  5. CAN Bus Explained: The Complete Guide to Automotive Networking, Arbitration, Error Handling, and Security

    Learn everything about CAN Bus (Controller Area Network), including architecture, frame structure, arbitration, CAN FD, error handling, security etc

    thecybersecguru.com/glossary/c

  6. CAN Bus Explained: The Complete Guide to Automotive Networking, Arbitration, Error Handling, and Security

    Learn everything about CAN Bus (Controller Area Network), including architecture, frame structure, arbitration, CAN FD, error handling, security etc

    thecybersecguru.com/glossary/c

  7. Researchers disclosed a critical buffer overflow (CVE-2024-39432) in connected car modems that enables remote code execution and lateral movement across the vehicle SoC.

    The findings challenge long-held assumptions about cellular protocol isolation in automotive systems.

    Full analysis:
    technadu.com/critical-vulnerab

    #AutomotiveSecurity #ConnectedCars #RCE #IoTSecurity

  8. Researchers disclosed a critical buffer overflow (CVE-2024-39432) in connected car modems that enables remote code execution and lateral movement across the vehicle SoC.

    The findings challenge long-held assumptions about cellular protocol isolation in automotive systems.

    Full analysis:
    technadu.com/critical-vulnerab

    #AutomotiveSecurity #ConnectedCars #RCE #IoTSecurity

  9. Researchers disclosed a critical buffer overflow (CVE-2024-39432) in connected car modems that enables remote code execution and lateral movement across the vehicle SoC.

    The findings challenge long-held assumptions about cellular protocol isolation in automotive systems.

    Full analysis:
    technadu.com/critical-vulnerab

    #AutomotiveSecurity #ConnectedCars #RCE #IoTSecurity

  10. Researchers disclosed a critical buffer overflow (CVE-2024-39432) in connected car modems that enables remote code execution and lateral movement across the vehicle SoC.

    The findings challenge long-held assumptions about cellular protocol isolation in automotive systems.

    Full analysis:
    technadu.com/critical-vulnerab

    #AutomotiveSecurity #ConnectedCars #RCE #IoTSecurity

  11. INC Ransom claims Yazaki Group breach - 350 GB allegedly stolen, incl. technical drawings for BMW & Nissan.
    technadu.com/inc-ransom-claims

    The dataset reportedly includes NDAs, HR medical records, financial data, and sensitive engineering documents. If validated, this represents substantial IP and supply-chain exposure across multiple OEMs.

    #Cybersecurity #Ransomware #DataBreach #Yazaki #BMW #Nissan #AutomotiveSecurity #SupplyChainSecurity

  12. INC Ransom claims Yazaki Group breach - 350 GB allegedly stolen, incl. technical drawings for BMW & Nissan.
    technadu.com/inc-ransom-claims

    The dataset reportedly includes NDAs, HR medical records, financial data, and sensitive engineering documents. If validated, this represents substantial IP and supply-chain exposure across multiple OEMs.

    #Cybersecurity #Ransomware #DataBreach #Yazaki #BMW #Nissan #AutomotiveSecurity #SupplyChainSecurity

  13. INC Ransom claims Yazaki Group breach - 350 GB allegedly stolen, incl. technical drawings for BMW & Nissan.
    technadu.com/inc-ransom-claims

    The dataset reportedly includes NDAs, HR medical records, financial data, and sensitive engineering documents. If validated, this represents substantial IP and supply-chain exposure across multiple OEMs.

    #Cybersecurity #Ransomware #DataBreach #Yazaki #BMW #Nissan #AutomotiveSecurity #SupplyChainSecurity

  14. Headed to #escar this week?

    ​Catch Franziskus talking high assurance crypto. And don't miss Karthik's keynote at the "PQC Migration & Supply Chain Readiness" workshop.

    Lets connect and talk #verification and #cryptography.

    escar.info/escar-europe/

    #AutomotiveSecurity #PQC #Crypto #SupplyChain

  15. Headed to #escar this week?

    ​Catch Franziskus talking high assurance crypto. And don't miss Karthik's keynote at the "PQC Migration & Supply Chain Readiness" workshop.

    Lets connect and talk #verification and #cryptography.

    escar.info/escar-europe/

    #AutomotiveSecurity #PQC #Crypto #SupplyChain

  16. Headed to #escar this week?

    ​Catch Franziskus talking high assurance crypto. And don't miss Karthik's keynote at the "PQC Migration & Supply Chain Readiness" workshop.

    Lets connect and talk #verification and #cryptography.

    escar.info/escar-europe/

    #AutomotiveSecurity #PQC #Crypto #SupplyChain

  17. Sasken and VicOne have teamed up to enhance automotive cybersecurity, focusing on end-to-end protection for vehicles. This partnership aims to address rising threats in the connected car space. How prepared are you for vulnerabilities in your vehicle's systems? #Cybersecurity #AutomotiveSecurity

    Read more: short.steelefortress.com/n9mfkv

  18. Sasken and VicOne have teamed up to enhance automotive cybersecurity, focusing on end-to-end protection for vehicles. This partnership aims to address rising threats in the connected car space. How prepared are you for vulnerabilities in your vehicle's systems? #Cybersecurity #AutomotiveSecurity

    Read more: short.steelefortress.com/n9mfkv

  19. Sasken and VicOne have teamed up to enhance automotive cybersecurity, focusing on end-to-end protection for vehicles. This partnership aims to address rising threats in the connected car space. How prepared are you for vulnerabilities in your vehicle's systems? #Cybersecurity #AutomotiveSecurity

    Read more: short.steelefortress.com/n9mfkv

  20. Sasken and VicOne have teamed up to enhance automotive cybersecurity, focusing on end-to-end protection for vehicles. This partnership aims to address rising threats in the connected car space. How prepared are you for vulnerabilities in your vehicle's systems? #Cybersecurity #AutomotiveSecurity

    Read more: short.steelefortress.com/n9mfkv

  21. Sasken and VicOne have teamed up to enhance automotive cybersecurity, focusing on end-to-end protection for vehicles. This partnership aims to address rising threats in the connected car space. How prepared are you for vulnerabilities in your vehicle's systems? #Cybersecurity #AutomotiveSecurity

    Read more: short.steelefortress.com/n9mfkv

  22. Security researchers reveal Bluetooth vulnerabilities affecting vehicles from multiple vendors

    Vulnerabilities: Use-after-free; improper validation; incorrect function termination, function call with incorrect parameter

    Impact: Can potentially allow access to the car's internals through the infotainment system

    Vulnerability IDs: CVE-2024-45431 to CVE-2024-45434

    Remediation:
    - Patches were released last year on the underlying SDK
    - Vendors using the SDK need to apply the patches

    #cybersecurity #automotivesecurity #Bluetooth

    bleepingcomputer.com/news/secu

  23. Security researchers reveal Bluetooth vulnerabilities affecting vehicles from multiple vendors

    Vulnerabilities: Use-after-free; improper validation; incorrect function termination, function call with incorrect parameter

    Impact: Can potentially allow access to the car's internals through the infotainment system

    Vulnerability IDs: CVE-2024-45431 to CVE-2024-45434

    Remediation:
    - Patches were released last year on the underlying SDK
    - Vendors using the SDK need to apply the patches

    #cybersecurity #automotivesecurity #Bluetooth

    bleepingcomputer.com/news/secu

  24. Security researchers reveal Bluetooth vulnerabilities affecting vehicles from multiple vendors

    Vulnerabilities: Use-after-free; improper validation; incorrect function termination, function call with incorrect parameter

    Impact: Can potentially allow access to the car's internals through the infotainment system

    Vulnerability IDs: CVE-2024-45431 to CVE-2024-45434

    Remediation:
    - Patches were released last year on the underlying SDK
    - Vendors using the SDK need to apply the patches

    #cybersecurity #automotivesecurity #Bluetooth

    bleepingcomputer.com/news/secu

  25. We turned a car into a Mario Kart controller! 🏎️🎮
     
    At PTP Cyber Fest, attendees used the steering wheel, pedals, and brakes of a real Renault Clio to play SuperTuxKart.
     
    We tapped into the CAN bus with cheap wire splicers.
     
    Mapped the signals using Python.
     
    We even wrote our own state machine to make it all work.
     
    Sure, it was a bit impractical. We had to remove the wing mirrors to fit it inside the building, deal with dodgy electrics, and babysit the car battery.
     
    Next year, we might try something a bit more portable.
     
    📌Read how we did it here: pentestpartners.com/security-b
     
    #CyberSecurity #AutomotiveSecurity #CANbus #HackThePlanet #PenTesting #Python #Infosec #PTPCyberFest2025

  26. We turned a car into a Mario Kart controller! 🏎️🎮
     
    At PTP Cyber Fest, attendees used the steering wheel, pedals, and brakes of a real Renault Clio to play SuperTuxKart.
     
    We tapped into the CAN bus with cheap wire splicers.
     
    Mapped the signals using Python.
     
    We even wrote our own state machine to make it all work.
     
    Sure, it was a bit impractical. We had to remove the wing mirrors to fit it inside the building, deal with dodgy electrics, and babysit the car battery.
     
    Next year, we might try something a bit more portable.
     
    📌Read how we did it here: pentestpartners.com/security-b
     
    #CyberSecurity #AutomotiveSecurity #CANbus #HackThePlanet #PenTesting #Python #Infosec #PTPCyberFest2025

  27. We turned a car into a Mario Kart controller! 🏎️🎮
     
    At PTP Cyber Fest, attendees used the steering wheel, pedals, and brakes of a real Renault Clio to play SuperTuxKart.
     
    We tapped into the CAN bus with cheap wire splicers.
     
    Mapped the signals using Python.
     
    We even wrote our own state machine to make it all work.
     
    Sure, it was a bit impractical. We had to remove the wing mirrors to fit it inside the building, deal with dodgy electrics, and babysit the car battery.
     
    Next year, we might try something a bit more portable.
     
    📌Read how we did it here: pentestpartners.com/security-b
     
    #CyberSecurity #AutomotiveSecurity #CANbus #HackThePlanet #PenTesting #Python #Infosec #PTPCyberFest2025

  28. We turned a car into a Mario Kart controller! 🏎️🎮
     
    At PTP Cyber Fest, attendees used the steering wheel, pedals, and brakes of a real Renault Clio to play SuperTuxKart.
     
    We tapped into the CAN bus with cheap wire splicers.
     
    Mapped the signals using Python.
     
    We even wrote our own state machine to make it all work.
     
    Sure, it was a bit impractical. We had to remove the wing mirrors to fit it inside the building, deal with dodgy electrics, and babysit the car battery.
     
    Next year, we might try something a bit more portable.
     
    📌Read how we did it here: pentestpartners.com/security-b
     
    #CyberSecurity #AutomotiveSecurity #CANbus #HackThePlanet #PenTesting #Python #Infosec #PTPCyberFest2025

  29. We turned a car into a Mario Kart controller! 🏎️🎮
     
    At PTP Cyber Fest, attendees used the steering wheel, pedals, and brakes of a real Renault Clio to play SuperTuxKart.
     
    We tapped into the CAN bus with cheap wire splicers.
     
    Mapped the signals using Python.
     
    We even wrote our own state machine to make it all work.
     
    Sure, it was a bit impractical. We had to remove the wing mirrors to fit it inside the building, deal with dodgy electrics, and babysit the car battery.
     
    Next year, we might try something a bit more portable.
     
    📌Read how we did it here: pentestpartners.com/security-b
     
    #CyberSecurity #AutomotiveSecurity #CANbus #HackThePlanet #PenTesting #Python #Infosec #PTPCyberFest2025