Skip to main content

Nissan disables Leaf app following hacking scare

According to news reports, Nissan has disabled its NissanConnect EV app after it was found that hackers could remotely control in-car systems. Security researcher Troy Hunt discovered the vulnerability during a software workshop he was attending and has detailed his findings on his blog. In a test with fellow researcher Scott Helme, they found they were able to remotely turn on the car's heated seating, heated steering wheel, fans and air conditioning. According to Helmes, “Fortunately, the Nissan Le
February 26, 2016 Read time: 2 mins
According to news reports, 838 Nissan has disabled its NissanConnect EV app after it was found that hackers could remotely control in-car systems.

Security researcher Troy Hunt discovered the vulnerability during a software workshop he was attending and has detailed his findings on his blog. In a test with fellow researcher Scott Helme, they found they were able to remotely turn on the car's heated seating, heated steering wheel, fans and air conditioning.

According to Helmes, “Fortunately, the Nissan Leaf doesn't have features like remote unlock or remote start, like some vehicles from other manufacturers do, because that would be a disaster with what's been uncovered. Still, a malicious actor could cause a great deal of problems for owners of the Nissan Leaf. Being able to remotely turn on the AC for a car might not seem like a problem, but this could put a significant drain on the battery over a period of time as the attacker can keep activating it.”

Paul Fletcher, cyber security evangelist at Alert Logic, comments, “The Nissan Leaf vulnerability is an issue that needs to be fixed by the manufacturer and while this vulnerability doesn’t have the same impact as the Jeep vulnerabilities documented last year, it’s an entry point into the controls of a vehicle and the potential for a more severe hack is now present."

For more information on companies in this article

Related Content

  • Simplifying enforcement systems type approval
    August 1, 2012
    Martyn Harriss looks at what we can do to simplify the type approval of enforcement equipment in Europe. I doubt that there are many who can remember the days when policemen hid in the bushes with stopwatches and flags to catch speeding motorists - and I'd suggest that back then there were few who were caught who would have dared question the accuracy of those watches or those who operated them. Probably, fewer still here in Europe could have dreamt that a supranational body such as the European Union (EU)
  • Less travel aggravation to blunt Aggieland fans’ motivation
    June 17, 2016
    Returning travel times to normal within two hours of the end of a major football game was the challenge facing College Station, Adam Lyons explains how this was achieved. College Station, TX, also known as ‘Aggieland’, is located right in the middle of the Dallas/Fort Worth, San Antonio and Houston triangle making the city accessible to over 14 million Texans within less than a four-hour drive. One of the biggest draws to this area is Texas A&M University (TAMU) and the Aggie football games in the fall, mea
  • Here Technologies releases OTA technology for connected and self-driving cars
    May 25, 2018
    Amsterdam’s Here Technologies claims its over-the-air (OTA) solution will help keep connected and self-driving vehicles safe with less cost to automakers and car owners. OTA Connect is intended to ensure data, software and firmware can be transferred between the cloud and a car securely to update vehicle functions. Ralf Herrtwich, senior vice president automotive at Here, says the device allows automakers to update vehicles remotely. Drivers can also purchase upgrades and features more conveniently.
  • Lyft boss: ‘There has to be another way of doing things’ 
    February 14, 2020
    Adding roads and vehicles is not enough to improve mobility, according to Raj Kapoor, chief strategy officer and head of business at Lyft.