Skip to main content

Jeep hackers return to remotely hack Cherokee’s digital systems

Just a year after they caused Chrysler to recall 1.4 million Jeep Cherokee vehicles after showing how they could remotely hijack a jeep’s digital systems over the internet, Charlie Miller and Chris Valasek are back to show how it could get worse. In the 2015 attack, they first toyed with the vehicle’s air conditioning, entertainment system and windscreen wipers, before cutting the transmission and causing the jeep to slowly come to a halt. At the Black Hat USA 2016 conference this week the two automot
August 4, 2016 Read time: 2 mins
RSSJust a year after they caused 1958 Chrysler to recall 1.4 million Jeep Cherokee vehicles after showing how they could remotely hijack a jeep’s digital systems over the internet, Charlie Miller and Chris Valasek are back to show how it could get worse.

In the 2015 attack, they first toyed with the vehicle’s air conditioning, entertainment system and windscreen wipers, before cutting the transmission and causing the jeep to slowly come to a halt.

At the Black Hat USA 2016 conference this week the two automotive cybersecurity researchers will outline new methods of cyber attack against the same Jeep Cherokee they hacked last year.

According to Miller and Valasek, hackers usually inject CAN messages on to the vehicle's network. However, there are often many limitations on what actions the vehicle can be forced to perform when injecting CAN messages. While an attacker may be able to easily change the speedometer while the car is driving, he may not be able to disable the brakes or turn the steering wheel unless the car he is driving meets certain prerequisites, such as travelling below a certain speed.

In their presentation, they plan to discuss how physical, safety critical systems react to injected CAN messages and how these systems are often resilient to this type of manipulation.

They will also outline new methods of CAN message injection which can bypass many of these restrictions and demonstrate the results on the braking, steering, and acceleration systems of an automobile. They end by suggesting ways these systems could be made even more robust in future vehicles.

Related Content

  • March 20, 2015
    Israel’s public transport infrastructure ‘lags behind developed countries’
    According to a new report soon to be published by the Bank of Israel, the level of infrastructure in Israel remains lower in some areas—particularly in the area of metropolitan public transit—than in most developed countries. This report, according to an advance copy released this week, examines the level of available infrastructure and investments associated with the sector, as well as how the country fares in these arenas in comparison to other nations. It claims the volume of investment in urban and inte
  • March 26, 2014
    Parkmobile displays wristwatch-based parking app
    The trend for wearable technology has reached the world of parking with the latest device being shown by Dutch company Parkmobile. It is using Intertraffic as the debut for its new system, which it hopes will bring a new level of convenience to motorists.
  • August 15, 2016
    Millions of cars at risk due to flaw in keyless entry systems, say researchers
    Researchers at the University of Birmingham in the UK have found that millions of cars could be vulnerable to theft, due to a flaw in keyless entry systems in many models. The findings, presented at the 25th USENIX Security Symposium in Austin, Texas, highlight two case studies that outline the ease at which criminals could gain access to numerous vehicles with relatively simple and inexpensive methods. Both attacks use a cheap, easily available piece of radio hardware to intercept signals from a key
  • July 24, 2013
    Reports says Apple iOS too late and too limited
    According to Frost and Sullivan, Apple’s new iOS 7 for the automotive industry is too late and too limited for the automotive market. The device has notable changes to the interface and improved voice capabilities of personal assistant SIRI. Auto OEMs however, with their respective partners have moved many a mile without the need for Apple’s involvement. The announcement may be seen as a phased approach after last year’s announcement of SIRI EyesFree by Apple at WWDC. “If compared to other players, such as