Skip to main content

Karamba’s Carwall thwarts mass hacks

Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving. Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation. David Barzilai, the company’s chairman and co-founder, said with tens of millions of l
September 13, 2016 Read time: 2 mins
8519 Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving.  

Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation.
 
David Barzilai, the company’s chairman and co-founder, said with tens of millions of lines of code in car software, it is impossible to guarantee all security bugs are eliminated. Carwall does not stop a hacker exploiting a security bug to transmit malware to a vehicle’s ECUs but it does prevent that malware being activated.

When Carwall detects foreign activity or code on an ECU it sends an alert to the manufacturer and system providers’ details on security bugs the hackers exploited, the code they attempted to run and the function it would execute. According to Barzilai, as the factory settings are definitive, Carwall does not produce false positives.

The software can be installed retrospectively to in-service vehicles by authorised distributers but cannot prevent individual hacks where the hacker can physically connect the vehicle’s CANbus architecture.

Related Content

  • April 10, 2012
    Flexible, demand-based parking charges ease parking problems
    Innovative parking initiatives on the US Pacific Coast. David Crawford reviews. Californian cities are leading the way in trialling new solutions to their endemic parking problems. According to Donald Shoup, a professor of urban planning at the University of California in Los Angeles, drivers looking for available spots can cause up to 74% of traffic congestion in downtown areas. One solution is variable, demand-responsive pricing of parking.
  • October 22, 2018
    Six easy steps to security
    As security threats become increasingly vast and varied, multinationals are beginning to see the need for an effective global security operations centre to protect their organisation. James I. Chong spells out what is required. You know you need a global security operations centre (GSOC) to support what you’ve built, identify threats, and prevent disasters before they happen - but how do you know if it’s truly effective? There’s no shortage of information coming into operation centres. Too often, it’s the
  • November 28, 2013
    Roadside infrastructure key to in-vehicle deployment
    The implementation of in-vehicle systems will require multilateral cooperation, as Honda’s Sue Bai explains to Colin Sowman. Vehicle manufacturers will shape the future direction of in-vehicle ITS systems, but they can’t do it on their own. So to find out what they see on the horizon, and the obstacles they face, ITS International spoke to Sue Bai, principal engineer in the Automobile Technology Research Department with Honda R&D Americas. Not only does she play an important role in Honda’s US-based ITS
  • March 25, 2014
    Tattile shows ANPR Mobile and Vega Color solutions
    Leading Italian ITS company Tattile is here at Intertraffic to expand its product range with the launch of new products, including ANPR Mobile and Vega Color. ANPR Mobile, a new cutting-edge technology in support of police forces, incorporates Megapixel sensors enabling it to scan over 100 number plates per second, front and rear, at any light condition. The newly-launched system needs neither embedded processing units nor physical connection between the cameras and the on-board computer/tablet.