Skip to main content

Karamba’s Carwall thwarts mass hacks

Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving. Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation. David Barzilai, the company’s chairman and co-founder, said with tens of millions of l
September 13, 2016 Read time: 2 mins
8519 Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving.  

Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation.
 
David Barzilai, the company’s chairman and co-founder, said with tens of millions of lines of code in car software, it is impossible to guarantee all security bugs are eliminated. Carwall does not stop a hacker exploiting a security bug to transmit malware to a vehicle’s ECUs but it does prevent that malware being activated.

When Carwall detects foreign activity or code on an ECU it sends an alert to the manufacturer and system providers’ details on security bugs the hackers exploited, the code they attempted to run and the function it would execute. According to Barzilai, as the factory settings are definitive, Carwall does not produce false positives.

The software can be installed retrospectively to in-service vehicles by authorised distributers but cannot prevent individual hacks where the hacker can physically connect the vehicle’s CANbus architecture.

For more information on companies in this article

Related Content

  • Topcon and Vodafone position themselves
    September 12, 2022
    New precise positioning service will be more accurate than individual GNSS, firms say
  • Highly automated driving ‘to spark adoption of centralised ADAS’
    August 18, 2016
    As vehicles become highly independent and begin to drive and react to traffic on their own, autonomous systems will aggregate and process data from a variety of on-board sensors and connected infrastructure, says ABI Research. This forces the industry to hit a hard reset on advanced driver assistance systems (ADAS) architectures, currently dominated by distributed processing and smart sensors. Automotive OEMs will need to adopt new platforms based on powerful, centralised processors and high-speed low la
  • Monitoring, detection and control systems inside tunnels can do much to improve traveller safety
    August 6, 2013
    ITS technology can do a great deal to improve tunnel safety, as Colin Sowman discovers. It was back in April 2004 that the European Parliament adopted the EU Directive which lays down the Minimum Safety Requirements for Tunnels in the Trans-European Road Network (2004/54/EC). This was the first unitary legislation setting minimum safety standards for European road tunnels and was designed to harmonise the management of tunnel safety at a national level. Operators of existing tunnels have until 30 April 201
  • Xerox’s mobility app offers Mobility as a Service
    June 1, 2016
    Andrew Bardin Williams looks at a new mobility app in Los Angeles and Denver that brings Mobility as a Service one step closer. Commuting today doesn’t have to require a single modal route. You can take Uber to the nearest light-rail station or a bus to the commuter line. Then on the other end of your trip, you can book a bikeshare the rest of the way to your office. For many who live in major metropolitan areas around the US this is a distinct reality as new ways to move from Point A to Point B continue to