Skip to main content

Karamba’s Carwall thwarts mass hacks

Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving. Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation. David Barzilai, the company’s chairman and co-founder, said with tens of millions of l
September 13, 2016 Read time: 2 mins
8519 Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving.  

Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation.
 
David Barzilai, the company’s chairman and co-founder, said with tens of millions of lines of code in car software, it is impossible to guarantee all security bugs are eliminated. Carwall does not stop a hacker exploiting a security bug to transmit malware to a vehicle’s ECUs but it does prevent that malware being activated.

When Carwall detects foreign activity or code on an ECU it sends an alert to the manufacturer and system providers’ details on security bugs the hackers exploited, the code they attempted to run and the function it would execute. According to Barzilai, as the factory settings are definitive, Carwall does not produce false positives.

The software can be installed retrospectively to in-service vehicles by authorised distributers but cannot prevent individual hacks where the hacker can physically connect the vehicle’s CANbus architecture.

For more information on companies in this article

Related Content

  • IBTTA: industry must commit to trust and accountability
    August 23, 2018
    Without a commitment to trust and accountability, the modern road tolling industry would not have the bedrock which it requires – and which customers demand, says IBTTA’s Bill Cramer When Tim Stewart, executive director of Colorado’s E-470 Public Highway Authority, settled on ‘trust and accountability’ as the themes for his year as IBTTA president, it was a very deliberate choice. Stewart was looking for language that would help deliver the global tolling industry’s message of service excellence to cust
  • Fleet management systems likely to become standard fitting in the Americas
    July 6, 2012
    According to a new research report, Fleet management in the Americas, from Berg Insight, the number of fleet management systems deployed in commercial vehicle fleets in North America was 2.8 million in Q4-2011. Growing at a compound annual growth rate (CAGR) of 15.9 per cent, this number is expected to reach 5.9 million by 2016. In Latin America, the number of installed fleet management systems is expected to increase from 1.3 million in Q4-2011, growing at a CAGR of 16.6 per cent to reach 2.8 million in 20
  • San Antonio GPS-based BRT gets the green light
    December 20, 2012
    San Antonio, Texas, is launching a new GPS-based bus rapid transit system (BRT) that keeps San Antonio’s new VIA Primo bus fleet on-schedule with minimal impact on individual traffic flow. Siemens Road and City Mobility business has worked together with Trapeze Group to create a new transit signal priority (TSP) solution that they say is the first of its kind to use a ‘virtual’ GPS-based detection zone for transit vehicle traffic management without the need for physical detector equipment at the intersectio
  • Connected Car offers plug-and-play remote vehicle access
    March 1, 2013
    Connected Car, Delphi’s plug-and-play connectivity device, connects into an OBDII port on any vehicle sold in the US from 1996 onwards and allows consumers to quickly lock and unlock their vehicle’s doors, as well as locate, track and even monitor their vehicles through a smartphone app or the internet. Delphi has teamed up with Verizon Wireless to ensure data transmitted through the device and via the internet remains secure and encrypted, allowing users to safely lock their vehicles remotely, track their