Skip to main content

Karamba’s Carwall thwarts mass hacks

Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving. Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation. David Barzilai, the company’s chairman and co-founder, said with tens of millions of l
September 13, 2016 Read time: 2 mins
8519 Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving.  

Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation.
 
David Barzilai, the company’s chairman and co-founder, said with tens of millions of lines of code in car software, it is impossible to guarantee all security bugs are eliminated. Carwall does not stop a hacker exploiting a security bug to transmit malware to a vehicle’s ECUs but it does prevent that malware being activated.

When Carwall detects foreign activity or code on an ECU it sends an alert to the manufacturer and system providers’ details on security bugs the hackers exploited, the code they attempted to run and the function it would execute. According to Barzilai, as the factory settings are definitive, Carwall does not produce false positives.

The software can be installed retrospectively to in-service vehicles by authorised distributers but cannot prevent individual hacks where the hacker can physically connect the vehicle’s CANbus architecture.

For more information on companies in this article

Related Content

  • America fires V2V starting gun
    April 7, 2014
    Leo McCloskey, ITS America’s senior vice president for Technical Programs, talks to Jason Barnes about what the recent NHTSA ruling on light vehicle connectivity means for cooperative infrastructures in North America. In early February the US Department of Transportation’s (USDOT’s) National Highway Traffic Safety Administration (NHTSA) announced it had decided to start taking steps to enable Vehicle-to-Vehicle (V2V) communication technology for light vehicles. In so doing, the many safety-related applicati
  • Improving driver information, making in-vehicle systems a reality
    January 26, 2012
    Scott J. McCormick, president of the Connected Vehicle Trade Association, considers what we have to do next to make the more widespread deployment of automotive telematics a reality
  • UK ‘pauses’ smart motorway roll-out
    January 12, 2022
    All-lane running motorway schemes to be halted until five years' safety data is available
  • Wireless traffic data in real time
    January 31, 2012
    The effect of moving objects on the electromagnetic landscape set up by cellular telephony networks can be detected and interpreted to give real-time traffic data across large geographical areas at low cost. Here, we revisit the Celldar concept. Global economic downturn has pushed public-sector agencies, transport administrations among them, to push even harder for cost efficiencies. Unfortunately, when it comes to transport safety and efficiency the public sector often has to work up to a cost rather than