Skip to main content

Michigan researchers show how easy it is to hack trucks

Cybersecurity researchers have already shown how easy it is to hack a Jeep Cherokee and take control of its brakes and steering, resulting in a recall for the vulnerability to be corrected. At the Usenix Workshop on Offensive Technologies conference next week, a group of University of Michigan researchers plan to demonstrate how trucks, which have also begun adding similar electronic control system, can be vulnerable to hacking. They plan to show how the openness of the SAE J1939 standard used across
August 5, 2016 Read time: 2 mins
Cybersecurity researchers have already shown how easy it is to hack a 1957 Jeep Cherokee and take control of its brakes and steering, resulting in a recall for the vulnerability to be corrected.

At the Usenix Workshop on Offensive Technologies conference next week, a group of University of Michigan researchers plan to demonstrate how trucks, which have also begun adding similar electronic control system, can be vulnerable to hacking.

They plan to show how the openness of the SAE J1939 standard used across all US heavy vehicle industries gives easy access for safety-critical attacks and that these attacks aren't limited to one specific make, model, or industry.

They will test their attacks on a 2006 Class-8 semi tractor and 2001 school bus and demonstrate how simple it is to replicate the kinds of attacks used on consumer vehicles and that it is possible to use the same attack on other vehicles that use the SAE J1939 standard.

They will also show safety critical attacks that include the ability to accelerate a truck in motion, disable the driver's ability to accelerate, and disable the vehicle's engine brake. Their presentation concludes with a discussion of the possibilities of additional attacks and potential remote attack vectors.

Related Content

  • February 1, 2012
    Advanced in-vehicle user interface - future developments
    Dave McNamara and Craig Simonds, Autotechinsider LLC, look at human-machine interface development out to 2015. The US auto industry is going through the worst crisis it has faced since the Great Depression. But it has embraced technologies that will produce the best-possible driving experience for the public. Ford was the first OEM to announce in-car internet radio and SYNC, its signature-branded User Interface (UI), is held up as the shining example of change embracement.
  • January 25, 2012
    Real time GPS tracking on school buses drives efficiencies
    Application of real time GPS tracking to school buses is driving operational efficiencies and allowing parents to follow their childern's movements, report Jason Barnes
  • May 12, 2022
    How can your business plan for the worst?
    Covid and extreme weather events have recently shown that disruption to our lives and daily routines can come suddenly, and on a staggering scale. Roger Leyland of ISN Solutions outlines what can be done to ensure continuity for agencies and businesses
  • January 19, 2012
    Connected Vehicles test vehicle to vehicle applications
    In the US, the ITS Joint Program Office is about to conduct a series of Driver Clinics intended to gauge public reaction to Connected Vehicle safety technologies and applications. Starting in August, the US Department of Transportation (USDOT) will test Vehicle-to-Vehicle (V2V) applications with everyday drivers in what it describes as 'normal operational scenarios'. These Driver Clinics are being carried out at six locations across the US and together with the subsequent model deployment beginning in 2012,