Skip to main content

Karamba’s Carwall thwarts mass hacks

Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving. Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation. David Barzilai, the company’s chairman and co-founder, said with tens of millions of l
September 13, 2016 Read time: 2 mins
8519 Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving.  

Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation.
 
David Barzilai, the company’s chairman and co-founder, said with tens of millions of lines of code in car software, it is impossible to guarantee all security bugs are eliminated. Carwall does not stop a hacker exploiting a security bug to transmit malware to a vehicle’s ECUs but it does prevent that malware being activated.

When Carwall detects foreign activity or code on an ECU it sends an alert to the manufacturer and system providers’ details on security bugs the hackers exploited, the code they attempted to run and the function it would execute. According to Barzilai, as the factory settings are definitive, Carwall does not produce false positives.

The software can be installed retrospectively to in-service vehicles by authorised distributers but cannot prevent individual hacks where the hacker can physically connect the vehicle’s CANbus architecture.

For more information on companies in this article

Related Content

  • UK's Hindhead tunnel pushes the boundaries of traffic management
    January 23, 2012
    The new Hindhead Tunnel is the first in the UK to use radar-based incident detection. Paul Arnold, project manager with the Highways Agency, talks about the project. The comparatively remote location of the A3 Hindhead Tunnel has resulted in it becoming one of the most sophisticated in the UK in terms of monitoring and control systems, according to Paul Arnold, project manager for the Highways Agency (HA), which manages strategic roads in England and Wales. It is the first tunnel in the UK to use radar for
  • AECOM-led consortium secures funding for CAV pilot scheme
    April 13, 2017
    An AECOM-led consortium has secured more than US$5.2 million (£4.2 million) of funding from Innovate UK and the Centre for Connected & Autonomous Vehicles (CCAV) to deliver a pilot scheme that could pave the way for the use of connected and autonomous vehicles to move people around airports, hospitals, business parks, shopping and tourist centres. The pilot project includes the design, development and testing of new autonomous and connected pods on-demand (PODs), culminating in on-road public trials at L
  • Escort unveils connected car radar / laser detection system
    November 9, 2017
    Escort has announced the launch of what it claims to be the first radar and laser detector designed for connected cars (CCs) to alert drivers of the latest ticket threats in real-time. Through built in Wi-Fi, the Escort Max 360c (EM360) updates drivers through the vehicles on board connection. The EM360 connects directly to the CC’s Wi-FI and automatically connects to the real-time ticket-protection network, Escort Live (EL), without needing the smartphone to connect to the detector. It is designed with
  • Google AV in collision with public transit bus
    March 1, 2016
    According to a report made by Google to the Department of Motor Vehicles (DMV), one of its autonomous vehicles (AV) has been in collision with a municipal bus in California. The crash happened on Valentine’s Day, when the Lexus RX-450H was travelling in autonomous mode in the right-hand lane approaching an intersection. It moved to the far right lane to make a right turn, but stopped when it detected sand bags sitting around a storm drain and blocking its path.