Skip to main content

Jeep hackers return to remotely hack Cherokee’s digital systems

Just a year after they caused Chrysler to recall 1.4 million Jeep Cherokee vehicles after showing how they could remotely hijack a jeep’s digital systems over the internet, Charlie Miller and Chris Valasek are back to show how it could get worse. In the 2015 attack, they first toyed with the vehicle’s air conditioning, entertainment system and windscreen wipers, before cutting the transmission and causing the jeep to slowly come to a halt. At the Black Hat USA 2016 conference this week the two automot
August 4, 2016 Read time: 2 mins
RSSJust a year after they caused 1958 Chrysler to recall 1.4 million Jeep Cherokee vehicles after showing how they could remotely hijack a jeep’s digital systems over the internet, Charlie Miller and Chris Valasek are back to show how it could get worse.

In the 2015 attack, they first toyed with the vehicle’s air conditioning, entertainment system and windscreen wipers, before cutting the transmission and causing the jeep to slowly come to a halt.

At the Black Hat USA 2016 conference this week the two automotive cybersecurity researchers will outline new methods of cyber attack against the same Jeep Cherokee they hacked last year.

According to Miller and Valasek, hackers usually inject CAN messages on to the vehicle's network. However, there are often many limitations on what actions the vehicle can be forced to perform when injecting CAN messages. While an attacker may be able to easily change the speedometer while the car is driving, he may not be able to disable the brakes or turn the steering wheel unless the car he is driving meets certain prerequisites, such as travelling below a certain speed.

In their presentation, they plan to discuss how physical, safety critical systems react to injected CAN messages and how these systems are often resilient to this type of manipulation.

They will also outline new methods of CAN message injection which can bypass many of these restrictions and demonstrate the results on the braking, steering, and acceleration systems of an automobile. They end by suggesting ways these systems could be made even more robust in future vehicles.

Related Content

  • April 27, 2015
    Rail signalling system ‘could be liable to hacking’
    A new rail signalling system to be installed across the UK could be liable to hacking, a government adviser has warned. Professor David Stupples told the BBC that the European Rail Traffic Management system (ERTMS) could be exposed to malicious software, or malware, and used to cause an accident perhaps telling the system the train is slowing when down when it is speeding up. "However, he said governments aren't complacent."Certain ministers know this is absolutely possible and they are worried about
  • September 22, 2015
    Americans steer away from autonomous parking
    According to a new survey from AAA, nearly 80 per cent of American drivers are confident in their parallel parking abilities and only one-in-four would trust this technology to park their vehicle. Despite this, AAA testing found self-parking technology outperformed unassisted drivers in four key areas. In partnership with the Automobile Club of Southern California's Automotive Research Center, AAA tested self-parking features on five vehicles: a 2015 Lincoln MKC, a 2015 Mercedes-Benz ML400 4Matic, a 2015
  • April 25, 2012
    China aims to boost road safety with drink driving crackdown
    The authorities in China claim that tough new laws against drink driving are already having a major benefit for road safety, according to the official news agency Xinhua. The latest official statistics reveal a sharp drop in road accidents caused by drink driving over a recent long holiday weekend. The newly amended law imposes harsher punishments on drunk drivers, with police also taking a tough line on enforcement.
  • February 2, 2012
    A carbon free and accident free Europe by 2015?
    By 2050, the Europe Commission aims to make transport in Europe carbon- and accident-free. Between now and then, however, a significant technological development and deployment effort is needed. Here, Neelie Kroes, European Commission Vice-President for the Digital Agenda, talks about what's being done. In many respects, COOPERS, CVIS and SAFESPOT, set up by the European Commission (EC) to explore the potential of cooperative infrastructure systems, are already legacy projects. Between them, the three devel