Skip to main content

Karamba’s Carwall thwarts mass hacks

Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving. Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation. David Barzilai, the company’s chairman and co-founder, said with tens of millions of l
September 13, 2016 Read time: 2 mins
8519 Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving.  

Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation.
 
David Barzilai, the company’s chairman and co-founder, said with tens of millions of lines of code in car software, it is impossible to guarantee all security bugs are eliminated. Carwall does not stop a hacker exploiting a security bug to transmit malware to a vehicle’s ECUs but it does prevent that malware being activated.

When Carwall detects foreign activity or code on an ECU it sends an alert to the manufacturer and system providers’ details on security bugs the hackers exploited, the code they attempted to run and the function it would execute. According to Barzilai, as the factory settings are definitive, Carwall does not produce false positives.

The software can be installed retrospectively to in-service vehicles by authorised distributers but cannot prevent individual hacks where the hacker can physically connect the vehicle’s CANbus architecture.

Related Content

  • November 12, 2015
    Driver aids make inroads on improving safety
    In-vehicle anti-collision systems continue to evolve and could eliminate some incidents altogether. John Kendall rounds up the current developments. A few weeks ago, I watched a driver reverse a car from a parking bay at right angles to the road, straight into a car driving along the road. The accident happened at walking pace, no-one was hurt and both cars had body panels that regain their shape after a low speed shunt.
  • September 12, 2024
    Cisco’s 5 steps to cyber-resilient roadways
    As the ITS world becomes ever more connected, cybersecurity risks are increasing. Cisco experts Pete Kavanagh and Angela Murphy explain how to overcome key challenges
  • March 19, 2014
    Videalert provides full time enforcement with part time workload
    Videalert says its algorithms on automated enforcement can reduce the workload on staff while providing an effective deterrent to offenders. Colin Sowman reports. While members of the public may believe that the enforcement of parking regulations, bus lanes and box junctions has no practical benefit and is purely a money-making operation, for many authorities the opposite is true. Enforcement is a loss-making but vital exercise as illegally parked vehicles create obstructions and dangers leading to gridl
  • March 31, 2017
    Smartphone solution for parking performance
    Automated parking offers optimised space utilisation and fewer damage complaints as David Crawford discovers. As cars become smarter, technology designed to make parking them more straightforward is developing in parallel. In turn, it is becoming clear that the places where vehicles spend much of their time will need to respond – more comprehensively than by supporting established aids such as smartphone-based parking location and reservation, or payment for time used.