Skip to main content

Karamba’s Carwall thwarts mass hacks

Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving. Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation. David Barzilai, the company’s chairman and co-founder, said with tens of millions of l
September 13, 2016 Read time: 2 mins
8519 Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving.  

Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation.
 
David Barzilai, the company’s chairman and co-founder, said with tens of millions of lines of code in car software, it is impossible to guarantee all security bugs are eliminated. Carwall does not stop a hacker exploiting a security bug to transmit malware to a vehicle’s ECUs but it does prevent that malware being activated.

When Carwall detects foreign activity or code on an ECU it sends an alert to the manufacturer and system providers’ details on security bugs the hackers exploited, the code they attempted to run and the function it would execute. According to Barzilai, as the factory settings are definitive, Carwall does not produce false positives.

The software can be installed retrospectively to in-service vehicles by authorised distributers but cannot prevent individual hacks where the hacker can physically connect the vehicle’s CANbus architecture.

For more information on companies in this article

Related Content

  • Debating a cost-effective means of road user charging
    July 20, 2012
    Does GPS/GNSS-based technology provide a cost-effective means of charging or tolling on a national or international level, or are the issues pertaining to effective enforcement an obstacle. Here, leading equipment manufacturers debate the issue.
  • Dutch survey shows drivers are in favour of road user charging
    January 16, 2012
    'Keep it simple, stupid' is an oft-forgotten axiom but in terms of road user charging it is entirely appropriate. So says the ANWB's Ferry Smith. A couple of decades ago, it might have been largely true that the technology aspects of advanced road infrastructure were the main obstacles to deployment. However, 20 years or more of development have led to a situation where such 'obstacles' are often no more than a political fig-leaf. Area-wide Road User Charging (RUC) is a case in point; speak candidly to syst
  • AGD Systems deploys radar wrong-way detection in Tyne Tunnel
    July 24, 2015
    Following a highly successful trial, AGD Systems’ new generation intelligent radar detection system, the 318, which is specifically designed for strategic applications, has now been fully deployed at the Tyne Tunnel for wrong way detection.
  • The twisting path to enforcement’s future
    June 5, 2014
    Survey reveals some division of views about enforcement’s future as Colin Sowman discovers. Technological advances and legislative changes pose many questions for those involved in road enforcement, ranging from the changing demands of privacy and data protection legislation to the practicalities on multi-speed enforcement. So to get the industry’s views ITS International took soundings on some of these bigger questions. In a world where many vehicles are fitted with GPS linked ‘black box’ telematics system