Skip to main content

Karamba’s Carwall thwarts mass hacks

Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving. Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation. David Barzilai, the company’s chairman and co-founder, said with tens of millions of l
September 13, 2016 Read time: 2 mins
8519 Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving.  

Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation.
 
David Barzilai, the company’s chairman and co-founder, said with tens of millions of lines of code in car software, it is impossible to guarantee all security bugs are eliminated. Carwall does not stop a hacker exploiting a security bug to transmit malware to a vehicle’s ECUs but it does prevent that malware being activated.

When Carwall detects foreign activity or code on an ECU it sends an alert to the manufacturer and system providers’ details on security bugs the hackers exploited, the code they attempted to run and the function it would execute. According to Barzilai, as the factory settings are definitive, Carwall does not produce false positives.

The software can be installed retrospectively to in-service vehicles by authorised distributers but cannot prevent individual hacks where the hacker can physically connect the vehicle’s CANbus architecture.

Related Content

  • Integrated corridor management 'to enhance travel efficiency'
    August 29, 2012
    New systems of software are coming together to form the technological backbone of a project that will apply practically to one corridor in Dallas, but influence travel across a wider area. Dallas Area Rapid Transit (DART) is the lead agency for an extensive Integrated Corridor Management (ICM) project in Dallas, covering an area stretching north east of downtown Dallas, 20 miles long by two miles wide. The corridor is defined loosely by the US-75 freeway and DART’s light rail ‘red line’. These are the theor
  • EC transit wishlist: face masks, distancing, cleaning, contactless
    June 3, 2020
    European Commission also recommends Covid-19 isolation facilities at transport hubs
  • Modelling MaaS and making it happen
    June 15, 2017
    Colin Sowman looks at some of the emerging technology being introduced to evaluate and operate Mobility as a Service. The fast-growing interest in Mobility-as-a-Service (MaaS) has prompted the creation of a host of software systems for those wanting to become a MaaS provider or participate in MaaS offerings. Most recently, at ITS International’s MaaS Market conference, Portuguese company Brisa Innovation announced a name change to A-to-Be to reflect its increasing involvement in the MaaS sector with the lau
  • Can GNSS solve the tolling world’s woes?
    December 5, 2013
    Kapsch’s Arno Klamminger and Wolfgang Fleischer consider the need for an agnostic approach to technology for charging and tolling. Periodically, given the march of technology, it is worth pausing and taking stock of where we have got to and where we go next. Such reflections are necessary if we are to take full advantage of what we have at our disposal and, potentially, avoid decisions which push us down technological culs de sac. A look at the use of Global Navigation Satellite System (GNSS)-based technol