Skip to main content

Karamba’s Carwall thwarts mass hacks

Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving. Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation. David Barzilai, the company’s chairman and co-founder, said with tens of millions of l
September 13, 2016 Read time: 2 mins
8519 Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving.  

Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation.
 
David Barzilai, the company’s chairman and co-founder, said with tens of millions of lines of code in car software, it is impossible to guarantee all security bugs are eliminated. Carwall does not stop a hacker exploiting a security bug to transmit malware to a vehicle’s ECUs but it does prevent that malware being activated.

When Carwall detects foreign activity or code on an ECU it sends an alert to the manufacturer and system providers’ details on security bugs the hackers exploited, the code they attempted to run and the function it would execute. According to Barzilai, as the factory settings are definitive, Carwall does not produce false positives.

The software can be installed retrospectively to in-service vehicles by authorised distributers but cannot prevent individual hacks where the hacker can physically connect the vehicle’s CANbus architecture.

For more information on companies in this article

Related Content

  • Autonomous vehicles, smart cities: moving beyond the hype
    February 21, 2018
    There is a lot of excited chatter about autonomous vehicles – but 2getthere’s Robbert Lohmann suggests we might need to take a step back and look realistically at what is achievable. You might be surprised that the chief commercial officer of a company delivering autonomous vehicles would begin an article with the suggestion that we need to get past the hype. And yet I do; because we have to, and urgently so. The hype prevents the development of autonomous vehicles that address actual transit needs. And
  • East Africa uses cargo tracking to foils criminals and collect tax
    June 10, 2015
    Shem Oirere looks at the beneficial effect of cargo tracking. The mandatory installation of electronic cargo tracking and security (ECTS) systems in Kenya, Tanzania and Uganda has helped enhance revenue collection, enforce cargo handling requirements, improved the business environment of the respective countries’ trade routes and helped cargo hauliers cut costs. This is being spearheaded by the state-owned tax collection agencies and the improved custom duty collection has not only enabled a reduction of im
  • Gesab gives the big picture with DeskWall
    March 20, 2018
    The efficiency and wellbeing of control room operators is catered for by Gesab with its new DeskWall Dynamic KVM (keyboard, video, mouse) system and consoles - examples of which are being displayed on its stand in hall 12. DeskWall works on a distributed cluster architecture and provides each operator with a large (up to 65inch) display on which they can configure multiple streams, internet feeds and other information. Operators can also control allocated functions (cameras, signs, alerts…) and send or sh
  • Gesab give the big picture with DeskWall
    March 21, 2018
    The efficiency and wellbeing of control room operators is catered for by Gesab with its new DeskWall Dynamic KVM (keyboard, video, mouse) system and consoles - examples of which are being displayed on its stand in hall 12. DeskWall works on a distributed cluster architecture and provides each operator with a large (up to 65inch) display on which they can configure multiple streams, internet feeds and other information. Operators can also control allocated functions (cameras, signs, alerts…) and send or sh