Skip to main content

Karamba’s Carwall thwarts mass hacks

Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving. Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation. David Barzilai, the company’s chairman and co-founder, said with tens of millions of l
September 13, 2016 Read time: 2 mins
8519 Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving.  

Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation.
 
David Barzilai, the company’s chairman and co-founder, said with tens of millions of lines of code in car software, it is impossible to guarantee all security bugs are eliminated. Carwall does not stop a hacker exploiting a security bug to transmit malware to a vehicle’s ECUs but it does prevent that malware being activated.

When Carwall detects foreign activity or code on an ECU it sends an alert to the manufacturer and system providers’ details on security bugs the hackers exploited, the code they attempted to run and the function it would execute. According to Barzilai, as the factory settings are definitive, Carwall does not produce false positives.

The software can be installed retrospectively to in-service vehicles by authorised distributers but cannot prevent individual hacks where the hacker can physically connect the vehicle’s CANbus architecture.

Related Content

  • July 26, 2012
    Technology advances improve enforcement
    Across the board, technology is being brought to bear to improve the efficiency of enforcement. Bus lane monitoring, parking and controlled access have all benefited from systems introduced in recent months. While speed and red light infringements tend to attract the most attention, there remain several other areas of enforcement where automation can bring significant operational and efficiency benefits. Lane monitoring and access control also continue to benefit from technological development.
  • August 29, 2013
    Radar and laser detectors save wild animals, protect drivers
    The Ministry of Transportation (MTO) in Ontario, Canada, where collisions with wild animals cost the province more than US$95 million annually, has installed wildlife sensor and alert systems to reduce the number of animal-vehicle collisions on its highways. The MTO has installed two types of systems – one uses laser tripwires to detect animals and the other uses radar, an alternative that was found to address some of the challenges posed by laser systems. Neither system has yet been determined to be
  • July 23, 2012
    Improving the positional accuracy of GNSS road user charging
    The European GINA project is intended to address and overcome many of the institutional, technical and public acceptance hurdles currently faced by satellite-based road user charging schemes. Dave Tindall and Denis Naberezhnykh, TRL, and Laure Dezes, ERF, write. Pay-as-you-drive Road User Charging (RUC), whereby demand (or congestion) is managed by applying appropriate tariffs in order to encourage drivers to make their journeys at less busy times, on less congested routes or even on different modes, could
  • November 7, 2013
    Tech combo used to target overweight vehicles
    UK enforcement agency VOSA is using a combination of ANPR and weigh-in-motion technology to detect and target overweight trucks on some of the busiest motorways.