Skip to main content

Karamba’s Carwall thwarts mass hacks

Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving. Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation. David Barzilai, the company’s chairman and co-founder, said with tens of millions of l
September 13, 2016 Read time: 2 mins
8519 Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving.  

Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation.
 
David Barzilai, the company’s chairman and co-founder, said with tens of millions of lines of code in car software, it is impossible to guarantee all security bugs are eliminated. Carwall does not stop a hacker exploiting a security bug to transmit malware to a vehicle’s ECUs but it does prevent that malware being activated.

When Carwall detects foreign activity or code on an ECU it sends an alert to the manufacturer and system providers’ details on security bugs the hackers exploited, the code they attempted to run and the function it would execute. According to Barzilai, as the factory settings are definitive, Carwall does not produce false positives.

The software can be installed retrospectively to in-service vehicles by authorised distributers but cannot prevent individual hacks where the hacker can physically connect the vehicle’s CANbus architecture.

For more information on companies in this article

Related Content

  • Intersection management, cooperative infrastructures - what next?
    February 1, 2012
    What do recent vehicle recalls mean for future cooperative infrastructures? Anthony Smith takes a look. As ITS industry stakeholders converge on Amsterdam for the 2010 Cooperative Mobility Showcase, an unprecedentedly wide range of technologies will be on display demonstrating what might be achievable in the future from innovations based on Vehicle-to-Vehicle (V2V) and Vehicle-to-Infrastructure (V2I) communications.
  • West Midlands pilots the UK’s first MaaS
    November 14, 2017
    Mobility-as-a-Service is being piloted in the UK’s second largest metropolitan area and will shortly be opened to the travelling public. A fully operational Mobility-as-a-Service (MaaS) offering is being piloted in the West Midlands region of the UK. Covering seven local authorities which make up the West Midlands metropolitan area and population of 2.8 million, the service is being provided through a memorandum of understanding (MOU) between Transport for West Midlands (TfWM), Finnish company MaaS Global
  • In-vehicle driving assistant
    December 19, 2014
    The ecoBART digital driving style assistant, developed by German companies pei tel Communications, MAExperience and seideltec solutions, measures parameters such as drivers’ acceleration and braking and sends an acoustic signal when preconfigured thresholds are exceeded.
  • Strike action prompts commuters to try something different
    June 2, 2014
    David Crawford highlights responses to transit disruption on both sides of the Atlantic. Shortly before workers at San Francisco Bay Area Rapid Transit (BART) began a lengthy round of pay and conditions-related strikes in summer 2013, impacting on the daily lives of 400,000 communities, online ridesharing group Avego publicised a new web address: bartstrike.com. By the start of the following week, Avego was encouraging stranded commuters to download its smartphone app by offering them the chance in a raffle