Skip to main content

Karamba’s Carwall thwarts mass hacks

Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving. Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation. David Barzilai, the company’s chairman and co-founder, said with tens of millions of l
September 13, 2016 Read time: 2 mins
8519 Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving.  

Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation.
 
David Barzilai, the company’s chairman and co-founder, said with tens of millions of lines of code in car software, it is impossible to guarantee all security bugs are eliminated. Carwall does not stop a hacker exploiting a security bug to transmit malware to a vehicle’s ECUs but it does prevent that malware being activated.

When Carwall detects foreign activity or code on an ECU it sends an alert to the manufacturer and system providers’ details on security bugs the hackers exploited, the code they attempted to run and the function it would execute. According to Barzilai, as the factory settings are definitive, Carwall does not produce false positives.

The software can be installed retrospectively to in-service vehicles by authorised distributers but cannot prevent individual hacks where the hacker can physically connect the vehicle’s CANbus architecture.

For more information on companies in this article

Related Content

  • The future? It's remote, says Valerann
    January 4, 2024
    More responsive traffic management is of enormous value – and Valerann thinks its SaaS system, remotely deployed in Latin America, is able to identify incidents much more quickly, finds Andrew Stone
  • Prevention is better than cure says Antaira’s David Zaveski
    November 2, 2016
    Antaira’s David Zaveski looks at how to improve the resilience of Ethernet systems. Detection and monitoring, and the subsequent management of transport systems, is becoming ever more sophisticated and also integrated as ITS spreads wider across cities and along highways and rail corridors.
  • SESAMES Awards 2014: And the winners are…
    November 3, 2014
    HARDWARE: Oberthur Technologies Lasink: integrated colour laser inside polycarbonate documents The first technology that allows personalisation of a colour picture with a single infrared laser inside a 100% polycarbonate document (passport or card). This technology also provides an extremely strong barrier against fraud and a clear and irrefutable authentication to the naked eye or under a magnifying glass.
  • Masks and AI: the new mobility reality
    June 26, 2020
    French authorities are using artificial intelligence to track face covering compliance