Skip to main content

Jeep hackers return to remotely hack Cherokee’s digital systems

Just a year after they caused Chrysler to recall 1.4 million Jeep Cherokee vehicles after showing how they could remotely hijack a jeep’s digital systems over the internet, Charlie Miller and Chris Valasek are back to show how it could get worse. In the 2015 attack, they first toyed with the vehicle’s air conditioning, entertainment system and windscreen wipers, before cutting the transmission and causing the jeep to slowly come to a halt. At the Black Hat USA 2016 conference this week the two automot
August 4, 2016 Read time: 2 mins
RSSJust a year after they caused 1958 Chrysler to recall 1.4 million Jeep Cherokee vehicles after showing how they could remotely hijack a jeep’s digital systems over the internet, Charlie Miller and Chris Valasek are back to show how it could get worse.

In the 2015 attack, they first toyed with the vehicle’s air conditioning, entertainment system and windscreen wipers, before cutting the transmission and causing the jeep to slowly come to a halt.

At the Black Hat USA 2016 conference this week the two automotive cybersecurity researchers will outline new methods of cyber attack against the same Jeep Cherokee they hacked last year.

According to Miller and Valasek, hackers usually inject CAN messages on to the vehicle's network. However, there are often many limitations on what actions the vehicle can be forced to perform when injecting CAN messages. While an attacker may be able to easily change the speedometer while the car is driving, he may not be able to disable the brakes or turn the steering wheel unless the car he is driving meets certain prerequisites, such as travelling below a certain speed.

In their presentation, they plan to discuss how physical, safety critical systems react to injected CAN messages and how these systems are often resilient to this type of manipulation.

They will also outline new methods of CAN message injection which can bypass many of these restrictions and demonstrate the results on the braking, steering, and acceleration systems of an automobile. They end by suggesting ways these systems could be made even more robust in future vehicles.

Related Content

  • August 2, 2012
    Live demonstrations at 2010 ITS annual meeting
    The practical, day-to-day co-working which goes on at Houston TranStar will form a major part of the demonstrations at the 2010 Annual Meeting, says co-chair of the organising committee Metropolitan Transit Authority of Harris County Chief of Police Thomas C. Lambert.
  • February 27, 2013
    Internet-connected cars their functionality and safety challenges
    Internet-connected cars are poised to flood the market in the near future. Pete Goldin considers the functionality they offer, the technology they use and the challenge they represent in terms of driver safety. Many vehicles on the road today offer some sort of inter­net connectivity and experts agree that this capability will become a competi­tive differentiator in the automotive industry in the next few years. The era of the digital vehicle, it seems, has started. “We clearly see that cars in the near f
  • February 23, 2021
    CVs vulnerable to ‘low skill’ cyberattacks: report
    17% of potential attack scenarios on connected vehicles identified as high-risk, finds Trend Micro 
  • December 21, 2015
    Measuring alertness to avert drowsy driver incidents
    Falling asleep at the wheel is the primary cause in thousands of deaths on American and other roads, with truck drivers the most at-risk group. David Crawford investigates measures to counter drowsy driving.