Skip to main content

Karamba’s Carwall thwarts mass hacks

Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving. Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation. David Barzilai, the company’s chairman and co-founder, said with tens of millions of l
September 13, 2016 Read time: 2 mins
8519 Karamba Security’s Carwall software is said to prevent ‘mass hacks’ of vehicles’ on-board systems including those for connected and autonomous driving.  

Carwall sits in the vehicle ECUs and ‘learns’ the factory settings. If hackers breach the manufacturer’s cyber security and tries to infect the ECUs of in-service vehicles, Karamba’s software detects the impending change to factory settings and blocks activation.
 
David Barzilai, the company’s chairman and co-founder, said with tens of millions of lines of code in car software, it is impossible to guarantee all security bugs are eliminated. Carwall does not stop a hacker exploiting a security bug to transmit malware to a vehicle’s ECUs but it does prevent that malware being activated.

When Carwall detects foreign activity or code on an ECU it sends an alert to the manufacturer and system providers’ details on security bugs the hackers exploited, the code they attempted to run and the function it would execute. According to Barzilai, as the factory settings are definitive, Carwall does not produce false positives.

The software can be installed retrospectively to in-service vehicles by authorised distributers but cannot prevent individual hacks where the hacker can physically connect the vehicle’s CANbus architecture.

For more information on companies in this article

Related Content

  • EdgeVis removes bandwidth barriers to mobile streamed video
    October 26, 2017
    A new generation of video compression can lower transmission costs of data and make streaming from mobile and body-worn cameras a reality, as Colin Sowman discovers. Bandwidth limitations have long been the bottleneck restricting the expanded use of video streaming for ITS, monitoring and surveillance purposes. Recent years have seen this countered to some degree by the introduction of ‘edge processing’ whereby ANPR, incident detection and other image processing is moved into (or close to) the camera, so
  • PayiQ exhibits Mobility as a Service
    October 8, 2015
    What is claimed to be the world’s first Mobility as a Service solution, PayiQ, can be viewed on the ITS Finland stand. The service, which is based on a smartphone app developed by iQ Payments, enables registered users to buy transit tickets, arrange ride-sharing and make a car- or bicycle-sharing booking.
  • Adaptive cruise control would suppress traffic instability
    March 20, 2014
    Professor Berthold Horn of Massachusetts Institute of Technology believes a modified adaptive cruise control could mitigate phantom traffic jamsthat occur for no apparent reason. The phenomenon of the phantom traffic jam is all too common: they appear for no apparent reason and, having caused frustrating delays for all travelers, evaporate for an equally mystical reason. Phantom traffic jams usually occur on busy highways and often take the form of repeatedly stopping and then accelerating up to near the
  • PTV sets its sights on Smart City solutions
    February 9, 2017
    Making a city smarter not only relies on understand technological opportunities but also human decision-making, as Miller Crockart explains. Cities are about people – a fact that can easily be forgotten when experts talk about roads, healthcare and education as though they are abstract and unconnected monoliths rather than things people use. Understanding how and why people use services is vital for making decisions on how they can be optimised for maximum efficiency across inter-connected networks that for