Skip to main content

Karamba’s Carwall thwarts mass hacks

Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving. Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation. David Barzilai, the company’s chairman and co-founder, said with tens of millions of l
September 13, 2016 Read time: 2 mins
8519 Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving.  

Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation.
 
David Barzilai, the company’s chairman and co-founder, said with tens of millions of lines of code in car software, it is impossible to guarantee all security bugs are eliminated. Carwall does not stop a hacker exploiting a security bug to transmit malware to a vehicle’s ECUs but it does prevent that malware being activated.

When Carwall detects foreign activity or code on an ECU it sends an alert to the manufacturer and system providers’ details on security bugs the hackers exploited, the code they attempted to run and the function it would execute. According to Barzilai, as the factory settings are definitive, Carwall does not produce false positives.

The software can be installed retrospectively to in-service vehicles by authorised distributers but cannot prevent individual hacks where the hacker can physically connect the vehicle’s CANbus architecture.

Related Content

  • Germany's approach to adaptive traffic control
    February 3, 2012
    Jürgen Mück, Siemens AG, describes the three-level approach taken in Germany to adaptive network control
  • Hackers remotely control jeep
    July 22, 2015
    Two US security experts have demonstrated security flaws in a Jeep Cherokee by taking wireless control of its systems from ten miles away. Writing on technology website Wired, Andy Greenberg, who was driving the jeep at the time, tells how Charlie Miller and Chris Valasek first toyed with the vehicle’s air conditioning, entertainment system and windscreen wipers, before cutting the transmission and causing the jeep to slowly come to a halt. Greenberg says, “The most disturbing manoeuvre came when they
  • Sony helps Rio get a better view of the Olympics
    June 29, 2016
    With the Olympics approaching, Sony’s Stephane Clauss examines how the latest camera technologies can help cities cope with the huge crowds attending major events. This August will see more than 10,000 athletes head to Rio de Janeiro for the Olympics Games. Alongside them will be their coaching staff, a hoard of logistics teams, thousands of volunteer marshals (London 2012 had 70,000) and millions of spectators. All such major events have nervous jitters on the way to the opening ceremony. This year has see
  • V2X: The design challenges
    May 2, 2018
    The connected future throws up a number of enticing possibilities for us all. But, says Houman Zarrinkoub of MathWorks, issues around visualisation, prototyping and model evolution need to be examined carefully. We are all aware of the huge amount of investment going into driverless car technologies. With the likes of Volvo, Tesla and BMW getting in on the act, soon they will be a common sight on our roads. However, for this to occur, the vehicles must be able to connect with each other and ensure driver