Skip to main content

Karamba’s Carwall thwarts mass hacks

Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving. Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation. David Barzilai, the company’s chairman and co-founder, said with tens of millions of l
September 13, 2016 Read time: 2 mins
8519 Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving.  

Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation.
 
David Barzilai, the company’s chairman and co-founder, said with tens of millions of lines of code in car software, it is impossible to guarantee all security bugs are eliminated. Carwall does not stop a hacker exploiting a security bug to transmit malware to a vehicle’s ECUs but it does prevent that malware being activated.

When Carwall detects foreign activity or code on an ECU it sends an alert to the manufacturer and system providers’ details on security bugs the hackers exploited, the code they attempted to run and the function it would execute. According to Barzilai, as the factory settings are definitive, Carwall does not produce false positives.

The software can be installed retrospectively to in-service vehicles by authorised distributers but cannot prevent individual hacks where the hacker can physically connect the vehicle’s CANbus architecture.

For more information on companies in this article

Related Content

  • New ANPR solutions overcome variables
    May 18, 2018
    The sheer range of variables makes it difficult to find a single algorithm to ensure a 100% standard of ANPR. David Crawford investigates new processing technology. Automatic number plate recognition (ANPR), using optical character recognition and image-processing to identify vehicles, plays key roles in traffic monitoring and law enforcement, access and parking control, electronic toll collection, vehicle security and crime deterrence. Overall, system performance is well rated, with high levels of
  • Michigan partnership for Cavnue and Haas Alert
    March 31, 2025
    Move brings real-time safety alerts and smart road technology to I-94
  • Asfinag makes case for ITS-G5 over 5G
    March 15, 2019
    Asfinag’s Manfred Harrer and Peter Meckel talk to Jason Barnes about the organisation’s first steps towards C-ITS deployments - and why ITS-G5 will be the underpinning standard For quite a number of years, it was assumed that the connectivity required for cooperative ITS (C-ITS) applications and autonomous vehicle (AV) operations would be catered for by a bespoke communications solution/protocol. This would provide localised ad hoc communication in a manner similar to Wi-Fi, and the dedicated bandwidth/n
  • Agnik uses Kore M2M network for auto insurance application
    April 20, 2012
    Agnik, a US-based data analytics company for distributed, mobile and embedded environments, has selected Kore Telematics to power its MineDrive usage-based automobile insurance application. This provides insurance carriers with detailed intelligence about driver and automobile performance, enabling more accurate adjustment of their offerings.