Skip to main content

Karamba’s Carwall thwarts mass hacks

Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving. Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation. David Barzilai, the company’s chairman and co-founder, said with tens of millions of l
September 13, 2016 Read time: 2 mins
8519 Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving.  

Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation.
 
David Barzilai, the company’s chairman and co-founder, said with tens of millions of lines of code in car software, it is impossible to guarantee all security bugs are eliminated. Carwall does not stop a hacker exploiting a security bug to transmit malware to a vehicle’s ECUs but it does prevent that malware being activated.

When Carwall detects foreign activity or code on an ECU it sends an alert to the manufacturer and system providers’ details on security bugs the hackers exploited, the code they attempted to run and the function it would execute. According to Barzilai, as the factory settings are definitive, Carwall does not produce false positives.

The software can be installed retrospectively to in-service vehicles by authorised distributers but cannot prevent individual hacks where the hacker can physically connect the vehicle’s CANbus architecture.

For more information on companies in this article

Related Content

  • Q-Free sees logic in video tolling
    September 15, 2014
    Q-Free’s Frank Kjelsli talks to Colin Sowman about why video tolling could be the boost to efficiency and interoperability the industry is seeking. Like it or not, the principal of one person, one tolling account is likely to become a reality: be that in America with the 2016 interoperability deadline or the European EETS requirement. Multi-tag readers are being introduced and alliances are being formed to meet legislative requirements but as the debate continues about which systems and protocols to adopt,
  • Real time GPS tracking on school buses drives efficiencies
    January 25, 2012
    Application of real time GPS tracking to school buses is driving operational efficiencies and allowing parents to follow their childern's movements, report Jason Barnes
  • Fara keeps data delivery simple
    January 25, 2018
    Simplifying the delivery of data and information gathered by traffic management, ticketing and other systems can improve travel efficiency and the traveller’s experience. Having quantified and analysed the previously unmonitored movement of road vehicles, trains, metros, cyclists and pedestrians, the ITS sector is a prime example of the digital world. Patterns discerned from those previously random happenings enable authorities to design more efficient transport systems, allow transport operators to run
  • VW uses Microsoft's Azure for ADAS
    February 16, 2021
    Software giant's platform expected to help reduce development cycles from months to weeks