Skip to main content

Jeep hackers return to remotely hack Cherokee’s digital systems

Just a year after they caused Chrysler to recall 1.4 million Jeep Cherokee vehicles after showing how they could remotely hijack a jeep’s digital systems over the internet, Charlie Miller and Chris Valasek are back to show how it could get worse. In the 2015 attack, they first toyed with the vehicle’s air conditioning, entertainment system and windscreen wipers, before cutting the transmission and causing the jeep to slowly come to a halt. At the Black Hat USA 2016 conference this week the two automot
August 4, 2016 Read time: 2 mins
RSSJust a year after they caused 1958 Chrysler to recall 1.4 million Jeep Cherokee vehicles after showing how they could remotely hijack a jeep’s digital systems over the internet, Charlie Miller and Chris Valasek are back to show how it could get worse.

In the 2015 attack, they first toyed with the vehicle’s air conditioning, entertainment system and windscreen wipers, before cutting the transmission and causing the jeep to slowly come to a halt.

At the Black Hat USA 2016 conference this week the two automotive cybersecurity researchers will outline new methods of cyber attack against the same Jeep Cherokee they hacked last year.

According to Miller and Valasek, hackers usually inject CAN messages on to the vehicle's network. However, there are often many limitations on what actions the vehicle can be forced to perform when injecting CAN messages. While an attacker may be able to easily change the speedometer while the car is driving, he may not be able to disable the brakes or turn the steering wheel unless the car he is driving meets certain prerequisites, such as travelling below a certain speed.

In their presentation, they plan to discuss how physical, safety critical systems react to injected CAN messages and how these systems are often resilient to this type of manipulation.

They will also outline new methods of CAN message injection which can bypass many of these restrictions and demonstrate the results on the braking, steering, and acceleration systems of an automobile. They end by suggesting ways these systems could be made even more robust in future vehicles.

Related Content

  • September 22, 2014
    ASECAP examines tolling during downturns
    ASECAP debated the impact of the financial crises on Europe’s tolling companies and considered the future in diverse economies. Colin Sowman picks some of the highlights. This year ASECAP (Association Europeenne des Concessionnaires d’Autoroutes et d’Ouvrages a’ Peage, with members in 21 countries managing 46,000km of roadway) held its annual Study & Information Days in Athens, Greece – one of the country hardest hit by recent economic problems. While the theme of the conference, Ensuring Sustainability in
  • February 8, 2017
    American drivers concerned about hacking of autonomous cars, says survey
    An online survey by the University of Michigan Sustainable Worldwide Transportation Department asked American adults about their level of concern with cyber-security of personally owned autonomous vehicles (with and without driver controls) and current conventional vehicles looked at both vehicle security and data privacy. Within vehicle security, the issues examined were hacking vehicles to cause crashes, hacking by terrorists to use the vehicle as a weapon, disabling many vehicles simultaneously and di
  • May 18, 2012
    Vulnerable road users face safety problems
    Concern is growing in Europe over the safety standards for vulnerable road users such as pedestrians, cyclists and powered two wheeler riders. A total of 169,000 pedestrians, cyclists and users of powered two-wheeled vehicles (PTW) have been killed on European roads since 2001; 15,300 of them in 2009. The figures have been published in the new Road Safety Performance Index (PIN) report and reveal a decrease in the number of deaths by 34% for pedestrians and cyclists, and just 18% for PTW riders compared to
  • February 26, 2015
    Kapsch sets course for higher profitability
    Kapsch TrafficCom experienced stable business development in the first three quarters of 2014/2015 with existing installation and operation projects. The Group was also able to obtain a number of new orders in Australia during the third quarter, although new major orders, upon which the innovation and growth plans are based, remained elusive due to the lack of corresponding invitations to tender. Revenue of the Group during the first three quarters of the 2014/15 fiscal year was US$283.5 million, slightly b