Skip to main content

Karamba’s Carwall thwarts mass hacks

Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving. Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation. David Barzilai, the company’s chairman and co-founder, said with tens of millions of l
September 13, 2016 Read time: 2 mins
8519 Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving.  

Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation.
 
David Barzilai, the company’s chairman and co-founder, said with tens of millions of lines of code in car software, it is impossible to guarantee all security bugs are eliminated. Carwall does not stop a hacker exploiting a security bug to transmit malware to a vehicle’s ECUs but it does prevent that malware being activated.

When Carwall detects foreign activity or code on an ECU it sends an alert to the manufacturer and system providers’ details on security bugs the hackers exploited, the code they attempted to run and the function it would execute. According to Barzilai, as the factory settings are definitive, Carwall does not produce false positives.

The software can be installed retrospectively to in-service vehicles by authorised distributers but cannot prevent individual hacks where the hacker can physically connect the vehicle’s CANbus architecture.

For more information on companies in this article

Related Content

  • Vehicle identification systems aid dynamic bus operations
    April 24, 2013
    David Crawford looks at a global trend towards more efficiency in less space As buses gain increased profile in the public transport mix needed for modal shift, attention is turning towards improving terminal layouts for more efficient handling of services and passengers. Locations, too, tend to be in central areas of cities, where sites are restricted and land values high. Enter the dynamic bus station, which uses modern vehicle identification systems to optimise space use and streamline service operation
  • Building a mobility operating system requires leadership of cities, says LADoT
    January 10, 2019
    A mobility operating system cannot be privately built, it must be open and governed by cities, according to the Los Angeles Department of Transportation (LADoT). Speaking at the Consumer Electronics Show 2019 in Las Vegas, LADoT general manager Seleta Reynolds described how the authority had published specifications to manage scooters following what she described as an “explosion of private companies”. She explained that the first bucket of application programming interfaces (API) provides consistent
  • The Middle East takes lead in urban mobility
    November 24, 2017
    Ralf Baron, Thomas Kuruvilla, Morsi Berguiga, Michael Zintel, Joseph Salem and Mario Kerbage from Arthur D. Little explain why there is much to be learned from the Middle East about the rapid evolution of transport systems. The rapid urbanisation across the globe is leading to mobility challenges as cities struggle to ensure their populations can move around freely using both public and private transport. Solving these issues is critical to ensuring that cities thrive and attract the investment and
  • Data revolution in real time travel information
    February 3, 2012
    Damian Black, CEO and founder of SQLstream Inc, writes about relational stream processing for real-time intelligent transport systems Almost unnoticed there is a revolution going on in Internet data which is different from anything seen before. It is taking place in sensor data, which research organisation Gartner predicts in 2012 will exceed 20 per cent of all non-video Internet traffic.