Skip to main content

Millions of cars at risk due to flaw in keyless entry systems, say researchers

Researchers at the University of Birmingham in the UK have found that millions of cars could be vulnerable to theft, due to a flaw in keyless entry systems in many models. The findings, presented at the 25th USENIX Security Symposium in Austin, Texas, highlight two case studies that outline the ease at which criminals could gain access to numerous vehicles with relatively simple and inexpensive methods. Both attacks use a cheap, easily available piece of radio hardware to intercept signals from a key
August 15, 2016 Read time: 3 mins
Researchers at the University of Birmingham in the UK have found that millions of cars could be vulnerable to theft, due to a flaw in keyless entry systems in many models.

The findings, presented at the 25th USENIX Security Symposium in Austin, Texas, highlight two case studies that outline the ease at which criminals could gain access to numerous vehicles with relatively simple and inexpensive methods.

Both attacks use a cheap, easily available piece of radio hardware to intercept signals from a key fob and then employ those signals to clone the key.

Though most automotive immobiliser systems have been shown to be insecure in the last few years, the security of remote keyless entry systems to lock and unlock a car based on rolling codes has received less attention.

The team, Flavio D. Garcia, David Oswald and Pierre Pavlidès, from the School of Computer Science at the University of Birmingham and Timo Kasper of Kasper & Oswald, found that the security of the keyless entry systems of most VW Group vehicles manufactured between 1995 and today relies on a few global master keys.  

By recovering the cryptographic algorithms and keys from electronic control units, a thief would be able to clone a VW Group remote control and gain unauthorised access to a wirelessly unlock practically every vehicle the Volkswagen group has sold for the last two decades, including makes like Audi and Škoda, by eavesdropping a single signal sent by the original remote.

A second case study outlines an attack that could affect millions more vehicles, including Alfa Romeo, Citroen, Fiat, Ford, Mitsubishi, Nissan, Opel/Vauxhall, Renault, and Peugeot.

The researchers devised a correlation-based attack on Hitag2, which allows recovery of the cryptographic key and thus cloning of the remote control with four to eight rolling codes and a few minutes of computation on a laptop.

Oswald explained, “You only need to eavesdrop once. From that point on you can make a clone of the original remote control that locks and unlocks a vehicle as many times as you want. Manufacturers really need to take heed and review their security systems.”

Garcia added, “It’s a bit worrying to see security techniques from the 1990s used in new vehicles. If we want to have secure, autonomous, interconnected vehicles, that has to change. Unfortunately the fix won’t be easy, as there is quite a slow software development cycle, new designs will be quite a long time in the making.”

The researchers suggest that car owners with affected vehicles avoid leaving any valuables in their car, and consider giving up on wireless key fobs altogether and open and lock their car doors the ‘old-fashioned’, mechanical way.

Related Content

  • UK university projects shows wireless sensors could improve rail crossing safety
    August 23, 2016
    A study by rail experts at the University of Huddersfield in the UK has concluded that railway crossing safety could be improved by networks of tiny wireless sensors attached to the tracks. Following extensive research at the university’s Institute of Railway Research (IRR), the Department for Transport-funded project established that the sensors could be powered by vibrations from approaching trains. They would then form a wireless network to send a message to lower or raise the gates. According to t
  • Parking provision dictates commuters’ modal choice
    March 16, 2016
    Researchers from two American Universities have found the provision of parking spaces can encourage automobile use and increase traffic congestion. It is well understood that increased automobile use is linked to congestion, environmental degradation and negative health and safety impacts. Trials of smart parking technology has shown a reduction in circulating traffic (looking for parking) can ease congestion and that the cost of parking can influence commuters’ modal choice. Now, researchers at the univers
  • A short guide to the shared mobility galaxy
    April 28, 2021
    This spring, a new book will be published with the mind-blowing title Shared Mobility Rocks: a Planner’s Guide to the Shared Mobility Galaxy. ITS International asks co-authors Friso Metz and Rebecca Karbaumer to share their golden rules
  • Smart mobility on the rise, says ABI Research
    May 10, 2016
    As extreme pollution and congestion in urban areas coupled with limited transportation options continues to challenge major cities across the globe, market intelligence firm ABI Research, predicts an imminent rise in smart electric mobility. Data analysis forecasts global electric vehicle revenue will hit US$58 billion in 2021, more than five times its market value in 2015. "The role of vehicle electrification in urban areas is part of a broader smart mobility model that includes shared vehicles, chargi