Skip to main content

Karamba’s Carwall thwarts mass hacks

Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving. Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation. David Barzilai, the company’s chairman and co-founder, said with tens of millions of l
September 13, 2016 Read time: 2 mins
8519 Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving.  

Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation.
 
David Barzilai, the company’s chairman and co-founder, said with tens of millions of lines of code in car software, it is impossible to guarantee all security bugs are eliminated. Carwall does not stop a hacker exploiting a security bug to transmit malware to a vehicle’s ECUs but it does prevent that malware being activated.

When Carwall detects foreign activity or code on an ECU it sends an alert to the manufacturer and system providers’ details on security bugs the hackers exploited, the code they attempted to run and the function it would execute. According to Barzilai, as the factory settings are definitive, Carwall does not produce false positives.

The software can be installed retrospectively to in-service vehicles by authorised distributers but cannot prevent individual hacks where the hacker can physically connect the vehicle’s CANbus architecture.

For more information on companies in this article

Related Content

  • Redflex enforces commitment to ethics
    May 29, 2013
    Redflex has introduced stringent ethical and procedural requirements following an investigation into corruption in Chicago. Like the Phoenix, which also happens to be the name of the company’s home city, Redflex Traffic Systems has been reborn. Following a headline-making public relations debacle late last year, Redflex has reinvented itself, establishing a series of stringent policies and procedures to ensure ethical business conduct, while continuing to deliver the traffic safety technology and services t
  • Switching Atlanta onto MaaS
    May 9, 2019
    It’s easy to talk about MaaS in the abstract – but MaaS isn’t going to work if it’s just a theory. Colin Sowman speaks to one woman about the practical benefits - and difficulties - of getting out of her car and switching to public transit in Atlanta, Georgia One of the first goals of Mobility as a Service (MaaS) inventor Sampo Hietanen is that MaaS should persuade households they don’t need a second car. This is starting to happen - even in the car-dominated US. Last year, authorities in the state of Ge
  • Video developments in automatic incident detection
    May 22, 2012
    David Crawford reviews technological progress with automatic incident detection Highway safety problems are likely to intensify given recent predictions of future traffic growth across the world. In the United States, the National Highway Traffic Safety Administration (NHTSA) reports that currently over 30,000 deaths and 1.5 million injuries occur as the result of accidents on the nation’s roads each year. These figures will increase with the number of kilometres travelled each year in the US expected to gr
  • P3s offer new options for public transit agencies
    March 28, 2018
    David Crawford welcomes new US guidance on public-private partnerships in the public transit sector. Public-private partnerships (P3s) are becoming increasingly favoured as a means of cost-effectively delivering much-needed public transit projects across the US. Previously, researched examples have tended to be on the large-scale while information on the potential for smaller, more localised schemes has been comparatively sparse. In a bid to fill that gap, the ‘Public Transportation Guidebook for Small