Skip to main content

Nissan disables Leaf app following hacking scare

According to news reports, Nissan has disabled its NissanConnect EV app after it was found that hackers could remotely control in-car systems. Security researcher Troy Hunt discovered the vulnerability during a software workshop he was attending and has detailed his findings on his blog. In a test with fellow researcher Scott Helme, they found they were able to remotely turn on the car's heated seating, heated steering wheel, fans and air conditioning. According to Helmes, “Fortunately, the Nissan Le
February 26, 2016 Read time: 2 mins
According to news reports, 838 Nissan has disabled its NissanConnect EV app after it was found that hackers could remotely control in-car systems.

Security researcher Troy Hunt discovered the vulnerability during a software workshop he was attending and has detailed his findings on his blog. In a test with fellow researcher Scott Helme, they found they were able to remotely turn on the car's heated seating, heated steering wheel, fans and air conditioning.

According to Helmes, “Fortunately, the Nissan Leaf doesn't have features like remote unlock or remote start, like some vehicles from other manufacturers do, because that would be a disaster with what's been uncovered. Still, a malicious actor could cause a great deal of problems for owners of the Nissan Leaf. Being able to remotely turn on the AC for a car might not seem like a problem, but this could put a significant drain on the battery over a period of time as the attacker can keep activating it.”

Paul Fletcher, cyber security evangelist at Alert Logic, comments, “The Nissan Leaf vulnerability is an issue that needs to be fixed by the manufacturer and while this vulnerability doesn’t have the same impact as the Jeep vulnerabilities documented last year, it’s an entry point into the controls of a vehicle and the potential for a more severe hack is now present."

For more information on companies in this article

Related Content

  • UK drivers want to be insured against hackers
    September 9, 2016
    According to a new survey of almost 1,200 people by road safety charity IAM RoadSmart, 74 per cent of drivers think insurers should provide cover for damage caused by hackers accessing control systems in driverless cars. The results of this survey have been used to guide IAM RoadSmart’s response to the Centre for Connected & Autonomous Vehicles’ consultation, Pathway to Driverless Cars.
  • Smartphone - the next technology for charging and tolling?
    January 25, 2012
    With all the debates over the most suitable future technology or technologies for charging and tolling, is it not time for the industry to look at what the rest of ITS is doing and bring a rank outsider - the smart phone - closer into the fold? By Jack Opiola, D'Artagnan Consulting LLC
  • Multimodal simulation helps to improve the airport experience
    December 15, 2022
    The vision of the IMHOTEP project is a multimodal European transport system, where different modes of travel are seamlessly integrated to give passengers a great door-to-gate and gate-to-door experience. Marcel Sala, scientific researcher at Aimsun, explains how this works at airports
  • Sensor detects pothole hazards in real time
    June 15, 2015
    An innovative ‘pothole alert’ research project could potentially save motorists billions of pounds in punctures, vehicle damage and road accidents every year, say researchers. Jaguar Land Rover is researching a new connected car technology that will allow a vehicle to identify the location and severity of potholes, broken drains and manhole covers, and then share this data in real-time via the cloud with other vehicles and with road authorities to help them prioritise repairs.