Skip to main content

Rail signalling system ‘could be liable to hacking’

A new rail signalling system to be installed across the UK could be liable to hacking, a government adviser has warned. Professor David Stupples told the BBC that the European Rail Traffic Management system (ERTMS) could be exposed to malicious software, or malware, and used to cause an accident perhaps telling the system the train is slowing when down when it is speeding up. "However, he said governments aren't complacent."Certain ministers know this is absolutely possible and they are worried about
April 27, 2015 Read time: 2 mins
A new rail signalling system to be installed across the UK could be liable to hacking, a government adviser has warned.

Professor David Stupples told the BBC that the European Rail Traffic Management system (ERTMS) could be exposed to malicious software, or malware, and used to cause an accident perhaps telling the system the train is slowing when down when it is speeding up.

"However, he said governments aren't complacent."Certain ministers know this is absolutely possible and they are worried about it. Safeguards are going in, in secret, but it's always possible to get around them," he said.

ERTMS uses a computer in the driver's cab to control the speed and movement of the train, whilst taking account of other trains on the railway. Although still operating under the umbrella term of ERTMS, 5021 Network Rail says it is creating its own traffic management system to optimise performance.

Network Rail said it acknowledges the threat. A spokesman said "We know that the risk [of a cyber-attack] will increase as we continue to roll out digital technology across the network. We work closely with government, the security services, our partners and suppliers in the rail industry and external cyber security specialists to understand the threat to our systems and make sure we have the right controls in place."

Related Content

  • Network Rail: campaign to reduce alcohol-related railway incidents
    December 22, 2017
    To combat the 7,419 recorded alcohol-related incidents on or around the railway in 2016/17, 16% of which took place over the festive period; Network Rail, British Transport Police, RSSB and charity Drinkware have launched a campaign called Keep a Clear Head. The scheme is also encouraging the public to keep a clear head on the rail network using local and national communications channels, including across social media.
  • ITS homes in on cycling safety
    April 9, 2014
    A new generation of ITS equipment is helping road authorities get to grips with cycle safety – and not a moment too soon as Colin Sowman discovers. Cyclists - remember them? Apparently not. At least not according to the OECD 2013 report Cycling, Health and Safety which contains the statement: ‘Cyclists are often forgotten in the design of the road traffic system’. Looking through the statistics that exist (each country appears to compile them differently) it is not difficult to see how such a conclusion cou
  • EV charging will require increased investment in cyber security systems
    April 18, 2012
    The technology architecture associated with electric vehicle (EV) charging is continuing to evolve as utilities and other key players in the industry ecosystem identify business requirements and risks associated with adding significant new demands on the electrical grid. One of the most pressing challenges is related to securing financial transactions and end-to-end communications throughout the EV charging infrastructure, and a recent report from Pike Research indicates that these areas will be the focus o
  • Outsourcing security weakness for Sweden’s driver and vehicle data
    October 24, 2017
    The security of driver and vehicle data hit the headlines this summer in Sweden and its authorities are still dealing with the fallout. David Crawford reports. epercussions from Sweden’s vehicle data outsourcing scandal continue to reverberate. Transportstyrelsen, the government’s transport agency, came under fire this summer for risking the personal security of over five million motorists by failing to implement full security checks on personnel in other countries to whom individual work packages could