Skip to main content

Michigan researchers show how easy it is to hack trucks

Cybersecurity researchers have already shown how easy it is to hack a Jeep Cherokee and take control of its brakes and steering, resulting in a recall for the vulnerability to be corrected. At the Usenix Workshop on Offensive Technologies conference next week, a group of University of Michigan researchers plan to demonstrate how trucks, which have also begun adding similar electronic control system, can be vulnerable to hacking. They plan to show how the openness of the SAE J1939 standard used across
August 5, 2016 Read time: 2 mins
Cybersecurity researchers have already shown how easy it is to hack a 1957 Jeep Cherokee and take control of its brakes and steering, resulting in a recall for the vulnerability to be corrected.

At the Usenix Workshop on Offensive Technologies conference next week, a group of University of Michigan researchers plan to demonstrate how trucks, which have also begun adding similar electronic control system, can be vulnerable to hacking.

They plan to show how the openness of the SAE J1939 standard used across all US heavy vehicle industries gives easy access for safety-critical attacks and that these attacks aren't limited to one specific make, model, or industry.

They will test their attacks on a 2006 Class-8 semi tractor and 2001 school bus and demonstrate how simple it is to replicate the kinds of attacks used on consumer vehicles and that it is possible to use the same attack on other vehicles that use the SAE J1939 standard.

They will also show safety critical attacks that include the ability to accelerate a truck in motion, disable the driver's ability to accelerate, and disable the vehicle's engine brake. Their presentation concludes with a discussion of the possibilities of additional attacks and potential remote attack vectors.

Related Content

  • April 29, 2015
    NOCoE delivers data for diligent DOTs
    David Crawford talks to Dennis Motiani about the role of the new National Operations Centre of Excellence. Consolidating the collective experience of the US transportation system’s management and operations (TSM&O) community, streamlining its information gathering, while cutting research times and costs are the key drivers behind the country’s new National Operations Centre of Excellence (NOCoE). Launched in January at the annual meeting of the Transportation Research Board (TRB), this sets out to be a sin
  • July 17, 2012
    New technologies enable increased collaboration, cooperation
    The continued expansion of IP camera networks increases the availability of useful information. At the same time, the opportunity exists to increase inter-agency collaboration. This makes information management all the more necessary in the control room environment. But the transportation sector could do a lot to help itself by gaining a better idea up front of what and how it wants to do things, says Electrosonic's Karl Johnson.
  • January 31, 2012
    In-vehicle intersection violation Warning system
    Mike Schagrin, ITS Joint Program Office, RITA, and John Harding, NHTSA, describe US progress towards an in-vehicle Intersection Violation Warning system. In 2008, there were 37,261 fatalities on US roadways. Of these, 7,772, some 20.8 per cent of the total, were defined as intersection crashes or intersection-related crashes. Through a multi-agency research initiative led by the Research and Innovative Technology Administration (RITA), the US Department of Transportation (USDOT) has developed a prototype In
  • July 23, 2019
    How C/AVs could serve rural communities
    In Ireland, there is low population density and a lot of rain – which can make last-mile journeys a trial. Orla O’Halloran at Arup has some thoughts on how C/AVs could serve rural communities Connected and autonomous vehicles (C/AVs) have the potential to be a vital link for people in rural communities, as part of a wider Mobility as a Service (MaaS) solution. That is the view of Orla O’Halloran, intelligent mobility consultant at Arup. She believes that MaaS needs to be considered in conjunction with ot