Skip to main content

Karamba’s Carwall thwarts mass hacks

Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving. Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation. David Barzilai, the company’s chairman and co-founder, said with tens of millions of l
September 13, 2016 Read time: 2 mins
8519 Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving.  

Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation.
 
David Barzilai, the company’s chairman and co-founder, said with tens of millions of lines of code in car software, it is impossible to guarantee all security bugs are eliminated. Carwall does not stop a hacker exploiting a security bug to transmit malware to a vehicle’s ECUs but it does prevent that malware being activated.

When Carwall detects foreign activity or code on an ECU it sends an alert to the manufacturer and system providers’ details on security bugs the hackers exploited, the code they attempted to run and the function it would execute. According to Barzilai, as the factory settings are definitive, Carwall does not produce false positives.

The software can be installed retrospectively to in-service vehicles by authorised distributers but cannot prevent individual hacks where the hacker can physically connect the vehicle’s CANbus architecture.

For more information on companies in this article

Related Content

  • Progress towards a pan-European cooperative infrastructure
    July 17, 2012
    Kallistratos Dionelis, General Secretary of ASECAP, makes the case for a lightly regulated, staged progression towards a pan-European cooperative infrastructure environment, the achievement of which should look to engender cooperation between the public and private sectors. Such an approach, he says, is the only real path to success.
  • Nokia sells device business to Microsoft, but retains Here
    September 4, 2013
    Nokia Corporation has signed an agreement to sell substantially all of its devices and services business and licence its patents to Microsoft for US$7.1 billion in cash, payable at closing. Following the transaction, Nokia plans to focus on its three established businesses: NSN network infrastructure and services; Here mapping and location services; and Advanced Technologies technology development and licensing.
  • Towards common standards for cooperative road infrastructures
    July 23, 2012
    Michael Noblett of Connexis discusses international progress towards common standards for cooperative road infrastructures. Will vehicle safety communications standards be able to support ITS on the international level, or will we settle once again for regional interoperability only? The answer lies in the current status of the draft standards themselves, and the requirements users and authorities are placing on the people who draft them.
  • C-ITS in Europe: jazz or symphony?
    August 18, 2021
    Communication between vehicles on the road is going to be increasingly important. Richard Lax of Kapsch TrafficCom explains why music is a good guide to the way that this could work safely