Skip to main content

Karamba’s Carwall thwarts mass hacks

Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving. Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation. David Barzilai, the company’s chairman and co-founder, said with tens of millions of l
September 13, 2016 Read time: 2 mins
8519 Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving.  

Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation.
 
David Barzilai, the company’s chairman and co-founder, said with tens of millions of lines of code in car software, it is impossible to guarantee all security bugs are eliminated. Carwall does not stop a hacker exploiting a security bug to transmit malware to a vehicle’s ECUs but it does prevent that malware being activated.

When Carwall detects foreign activity or code on an ECU it sends an alert to the manufacturer and system providers’ details on security bugs the hackers exploited, the code they attempted to run and the function it would execute. According to Barzilai, as the factory settings are definitive, Carwall does not produce false positives.

The software can be installed retrospectively to in-service vehicles by authorised distributers but cannot prevent individual hacks where the hacker can physically connect the vehicle’s CANbus architecture.

For more information on companies in this article

Related Content

  • Autonomous driving – what can we really expect?
    June 6, 2016
    Dave Marples of Technolution BV looks beyond the hype to the practical implementation of autonomous vehicles. Having looked at the development of this sector for some time, I am concerned about the current state of autonomous driving development as engineering (and marketing) have run way ahead of the wider systemic, and legislative, requirements to support an autonomous future.
  • Cubic Telecom & Skylo offer driver comms coverage in road emergencies
    December 17, 2024
    Automatic emergency care requests possible, even from remote locations
  • Hyperloop One completes Hyperloop full systems test
    July 17, 2017
    Hyperloop One has completed its first full systems Hyperloop test in a vacuum environment at the company’s test track in the Nevada desert. The vehicle coasted above the first portion of the track for 5.3 seconds using magnetic levitation and reached nearly 2Gs of acceleration, while achieving the Phase 1 target speed of 70mph. The company is now entering the next campaign of testing, which will target speeds of 250 mph. Hyperloop One tested all the system's components, including its highly efficient motor,
  • US IntelliDrive cooperative infrastructure programme
    February 2, 2012
    The 'rebranding' of the US's Vehicle-Infrastructure Integration programme as IntelliDrive marks an effort to make the whole undertaking more accessible both in terms of nomenclature and technology. Shelley Row, director of the ITS Joint Program Office within USDOT's Research and Innovative Technology Administration, talks about the changes