Skip to main content

Karamba’s Carwall thwarts mass hacks

Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving. Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation. David Barzilai, the company’s chairman and co-founder, said with tens of millions of l
September 13, 2016 Read time: 2 mins
8519 Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving.  

Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation.
 
David Barzilai, the company’s chairman and co-founder, said with tens of millions of lines of code in car software, it is impossible to guarantee all security bugs are eliminated. Carwall does not stop a hacker exploiting a security bug to transmit malware to a vehicle’s ECUs but it does prevent that malware being activated.

When Carwall detects foreign activity or code on an ECU it sends an alert to the manufacturer and system providers’ details on security bugs the hackers exploited, the code they attempted to run and the function it would execute. According to Barzilai, as the factory settings are definitive, Carwall does not produce false positives.

The software can be installed retrospectively to in-service vehicles by authorised distributers but cannot prevent individual hacks where the hacker can physically connect the vehicle’s CANbus architecture.

For more information on companies in this article

Related Content

  • UK plans changes to AV Code
    April 20, 2022
    Drivers can view content 'not related to driving' - but mobile phone use still illegal
  • Pilot scheme tests automatic emergency call system
    March 14, 2012
    Development of the European eCall system is now at a stage of national systems testing. Ertico’s project manager for the HeERO pilot scheme Andy Rooke has given ITS International the lowdown on progress towards pan-European eCall services. Live testing is now under way in the nine countries participating in the European Commission’s HeERO project – a three year pilot scheme preparing the way for full deployment of Europe’s eCall automatic emergency call system.
  • Cost-effective alternatives to traditional loops
    February 1, 2012
    Traffic signal control is a mainstay of urban congestion management. Despite advances in vehicle detection sensors, inductive loops, which operate by using a magnetic field to detect the metal components in vehicles, are still the most common enabler for intelligent signalised junctions.
  • IRD complements WIM with tyre under-inflation detection
    May 8, 2015
    To complement its existing WIM offering, IRD has introduced a system to detect under-inflated and flat tyres at highway speeds. Tyre inflation pressure has both safety and economic impacts for road users and none more so than with commercial vehicles. An underinflated tyre has decreased directional control, increased risk of catastrophic failure, and negatively impacts tyre life and fuel economy. In June 2014 the USDOT published Large Truck and Bus Crash Facts 2012 in which the Federal Motor Carrier Safety