Skip to main content

Karamba’s Carwall thwarts mass hacks

Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving. Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation. David Barzilai, the company’s chairman and co-founder, said with tens of millions of l
September 13, 2016 Read time: 2 mins
8519 Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving.  

Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation.
 
David Barzilai, the company’s chairman and co-founder, said with tens of millions of lines of code in car software, it is impossible to guarantee all security bugs are eliminated. Carwall does not stop a hacker exploiting a security bug to transmit malware to a vehicle’s ECUs but it does prevent that malware being activated.

When Carwall detects foreign activity or code on an ECU it sends an alert to the manufacturer and system providers’ details on security bugs the hackers exploited, the code they attempted to run and the function it would execute. According to Barzilai, as the factory settings are definitive, Carwall does not produce false positives.

The software can be installed retrospectively to in-service vehicles by authorised distributers but cannot prevent individual hacks where the hacker can physically connect the vehicle’s CANbus architecture.

For more information on companies in this article

Related Content

  • Xerox video enforcement deters stopped-bus overtaking
    November 7, 2012
    High resolution cameras, video motion detection and modems are being fitted to school buses in Maryland, as part of a system designed to enforce and deter stopped-bus overtaking violations. A new video enforcement system is being installed to record drivers illegally overtaking school buses in Frederick County, Maryland. It is against the law to overtake a parked school bus that is loading or unloading students, yet a 2011 survey for the Maryland Department of Education found 7,000 cases of drivers illegall
  • Growth of OEM telematics in new passenger cars
    March 3, 2016
    The latest research by ABI Research forecasts the global penetration of embedded and hybrid factory installed OEM telematics in new passenger cars to exceed 72 per cent by 2021. Growth will mainly be driven by key volume car OEMs in the US, European Union and China markets. Brands within these markets showing accelerated growth include GM, which expects to reach 12 million OnStar subscribers globally by the end of 2016, including its Opel brand in Europe and Cadillac in China; and Ford, which claims to have
  • University of Michigan’s M City to test autonomous driving
    March 27, 2015
    The University of Michigan is creating the Mobility Transformation Center (MTC), in partnership with government and leading tech companies, as a means to test and develop the infrastructure and in-vehicle components to make autonomous vehicles a reality. M City, the nickname for the MTC, is a mock city that allows developers to test a fully autonomous driving experience in a real-world environment. With completion scheduled for July, the 32-acre facility on U of M’s North Campus will include buildings,
  • Reliability is key to AV acceptance, finds Dutch study
    August 31, 2018
    Reliability is the key factor in people’s acceptance of autonomous vehicles, suggests a new academic study. Nine out of ten people said it was easy to use 2getthere’s Parkshuttle, operated by the Dutch municipality of Capelle aan den Ijssel. Four out of five respondents said the system - which connects Rivium business park and metro station Kralingse Zoom - is reliable, mainly because of its frequency and punctuality. The qualitative study from Utrecht University also focused on operational factors