Skip to main content

Karamba’s Carwall thwarts mass hacks

Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving. Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation. David Barzilai, the company’s chairman and co-founder, said with tens of millions of l
September 13, 2016 Read time: 2 mins
8519 Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving.  

Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation.
 
David Barzilai, the company’s chairman and co-founder, said with tens of millions of lines of code in car software, it is impossible to guarantee all security bugs are eliminated. Carwall does not stop a hacker exploiting a security bug to transmit malware to a vehicle’s ECUs but it does prevent that malware being activated.

When Carwall detects foreign activity or code on an ECU it sends an alert to the manufacturer and system providers’ details on security bugs the hackers exploited, the code they attempted to run and the function it would execute. According to Barzilai, as the factory settings are definitive, Carwall does not produce false positives.

The software can be installed retrospectively to in-service vehicles by authorised distributers but cannot prevent individual hacks where the hacker can physically connect the vehicle’s CANbus architecture.

For more information on companies in this article

Related Content

  • Mobility as a Service gaining traction in US and Europe
    December 15, 2015
    As Mobility as a Service starts to move into the mainstream of transport planning, David Crawford compares European and North American initiatives. Mobility as a Service (MaaS) is a concept fast gaining traction on both sides of the Atlantic as a way of giving travellers digital multimodal one-stop shops and journey planning tools as an alternative to private car use. Planned delivery methods include subscription-based travel packages in Europe, and 'mobility aggregator' apps, including employee commute ben
  • TransWiseway and IBM building China’s largest connected vehicles platform
    June 2, 2014
    IBM is collaborating with Beijing transportation information service systems provider TransWiseway Information Technology to build the largest connected vehicles platform in China that will transform the development of the country’s connected car services industry. The cloud-based platform will use advanced analytics for applications that offer real-time in-vehicle services to mobile devices, such as weather advisories, traffic alerts and alternate route suggestions.
  • Monali Shah: "The way we move and the air we breathe is all connected"
    September 5, 2023
    Be yourself: Monali Shah of Google and ITS America tells Adam Hill how showing her personality in business has enabled her to make deeper connections on a ‘non-traditional’ journey into transportation
  • Ford engineers falling asleep at the wheel – level 3 autonomy ditched
    February 21, 2017
    Ford has denied reports quoting the company’s executive vice president of product development and chief technical officer, Raj Nair, as saying that its engineers were falling asleep while testing autonomous vehicles, although it has confirmed that it will not offer SAE Level 3 vehicles. “These are trained engineers who are there to observe what’s happening,” Nair told Bloomberg. “But it’s hu