Skip to main content

Karamba’s Carwall thwarts mass hacks

Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving. Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation. David Barzilai, the company’s chairman and co-founder, said with tens of millions of l
September 13, 2016 Read time: 2 mins
8519 Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving.  

Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation.
 
David Barzilai, the company’s chairman and co-founder, said with tens of millions of lines of code in car software, it is impossible to guarantee all security bugs are eliminated. Carwall does not stop a hacker exploiting a security bug to transmit malware to a vehicle’s ECUs but it does prevent that malware being activated.

When Carwall detects foreign activity or code on an ECU it sends an alert to the manufacturer and system providers’ details on security bugs the hackers exploited, the code they attempted to run and the function it would execute. According to Barzilai, as the factory settings are definitive, Carwall does not produce false positives.

The software can be installed retrospectively to in-service vehicles by authorised distributers but cannot prevent individual hacks where the hacker can physically connect the vehicle’s CANbus architecture.

For more information on companies in this article

Related Content

  • Navya showcases Autonom cab in Paris
    November 10, 2017
    Navya has unveiled its Autonom Cab (AC) in Paris to address challenges urban populations face when travelling in and around cities. The cab, designed to be completely autonomous, comes without a cockpit, steering wheel or pedals and can carry up to six passengers. It is capable of speeds up to 90km/h, but will average towards 50km/h to conform with local speed limits. The Navya app enables users to order an AC and open and close the vehicle’s doors to start it up. The cab is also capable of pre-empting
  • Developing new detection and monitoring technologies
    November 21, 2012
    Established detection and monitoring technologies continue to evolve, but is it time to challenge their supremacy and take a serious look at less conventional ITS? Andy Graham considers the options with Jason Barnes. For ITS system providers, the most potentially lucrative markets over the next few years are going to be the BRIC (Brazil Russia India and China) group of countries, all of which are building many miles of new roads, applying tolling to existing ones (8,000km in China alone) and implementing w
  • Illinois Tollway looking to test connected vehicles
    February 27, 2015
    The Illinois Tollway Board of Directors is eager to participate in a federal pilot program to test new connected vehicle technology that would allow cars and trucks to share real-time information about traffic congestion and roadway conditions to help reduce crashes. The Tollway has applied to participate in the program which would allow its federal government contractor, CDM Smith Federal, to test the new technology on the Jane Addams Memorial Tollway (I-90), which is being rebuilt at a cost of US$2.5 bill
  • Pan-European travel information is a reality – at a price
    November 26, 2013
    Pan-European, multi-modal traffic and travel information is now available, for drivers willing to pay for it. Jon Masters reports. Those able to afford a new car with all the latest options including internet connectivity can now look forward to getting detailed up-to-the-minute traffic information. They can also access multi-modal travel data, such as train times, plus weather forecasts and parking availability. Take the connected car to any Western European country and the system still works with live