Vehicle Hacking with Derrick Thiecke
Easy Prey21 Dec 2022

Vehicle Hacking with Derrick Thiecke

We understand that hackers look for weaknesses in networks to manipulate or take data, but understanding the ways that vehicles can also be accessed either remotely or physically can be a bit surprising.

Today's guest is Derrick Thiecke. Derrick works as an Embedded Systems Security Tester in the automotive industry where he found himself after spending over a decade in the corporate IT world. When Derrick isn't data dumping ROM chips, scouring through vehicle log data, or fuzzing CAN networks, he can be found as a brief blur passing by you on the highway.

Show Notes:
  • [0:58] - Derrick shares his background and current role as a security tester for automotive controllers and devices.
  • [3:30] - There are differences between vehicle networks and home networks. The main network for vehicles is CAN bus.
  • [5:12] - Because it is a bussed network, Derrick explains how all devices on the network can access all the data.
  • [6:50] - Previously, you had to have physical access to hack a car, but not anymore.
  • [8:19] - Derrick describes how his own vehicle accesses data on a network.
  • [9:56] - The implementation of standards has changed the way vehicles are serviced.
  • [11:18] - Safety critical features are isolated, but some things can still be accessed that can be harmful.
  • [12:29] - There was an event in 2015 where a parking feature was hacked while the vehicle was in motion.
  • [13:59] - There are ways to communicate with and change the fuel mapping over CAN bus, but there is usually a physical component required.
  • [16:07] - Derrick describes a scenario that creates a potential threat.
  • [19:04] - The automotive industry typically sits about a decade behind in technology.
  • [21:24] - Derrick lists some of the features in a vehicle that are connected to a network.
  • [23:18] - The number of vehicle recalls due to software issues has increased since 2015, but the issues aren't growing.
  • [25:01] - Movies depict vehicle hacking as possible disasters. Derrick shares his concerns.
  • [26:44] - When ransomware became a problem, we had the same questions. The threat for the worst case scenario is plausible.
  • [28:31] - Derrick describes the most concerning problem he has experienced as a tester.
  • [30:59] - Different cars all use the same controllers, even those without the same features.
  • [32:26] - There are devices that can unlock vehicles without the key or keyfob.
  • [34:18] - When there is an issue with a computer, typically there is an update to solve it. That currently isn't the case for most vehicles.
  • [35:41] - There are some updates that can happen remotely, but the catch-22 is that the wireless connection makes the vehicle susceptible to threats.
  • [37:02] - There is a huge shortage of workforce in this industry.
  • [38:41] - Derrick recommends the book The Car Hacker's Handbook if you are interested in this field.

Thanks for joining us on Easy Prey. Be sure to subscribe to our podcast on iTunes and leave a nice review.

Links and Resources:

Det här avsnittet är hämtat från ett öppet RSS-flöde och publiceras inte av Podme. Det kan innehålla reklam.

Avsnitt(329)

Job Recruiter Scams

Job Recruiter Scams

Job hunting is hard enough without having to stop and ask whether the recruiter in your inbox is even real. My guest today, Jay Jones, ran into that problem firsthand after being laid off in December ...

24 Juni 35min

Bail Bonds Scams

Bail Bonds Scams

Getting a call that someone you love has been arrested is scary enough. Getting that call from someone who sounds official, knows just enough to seem credible, and says you have to send money right aw...

17 Juni 36min

Confessions of a Fraudster

Confessions of a Fraudster

Technology keeps changing, but many of the most effective scams still come down to something very human: trust. My guest today is Tony Sales, co-founder of We Fight Fincrime and Underworld TV. Tony ha...

10 Juni 54min

Personal Safety

Personal Safety

Scams and safety threats don't always announce themselves. Sometimes they start quietly, with a moment of distraction, a strange feeling you ignore, or a situation that shifts just enough to test whet...

3 Juni 43min

Data For Sale

Data For Sale

Everyday conveniences ask for tiny pieces of information all the time like a phone number at checkout, a zip code at the register, an email address for a receipt, or a loyalty account for a small disc...

27 Maj 43min

Exploiting Psychology

Exploiting Psychology

Scams are often explained as a failure of judgment, but the truth is far more human. People are not fooled because they are foolish. They are manipulated at the exact moment emotion overrides logic, w...

20 Maj 45min

Investment Traps

Investment Traps

Investment losses can be confusing because they do not always tell the whole story. Sometimes money is lost because the market has changed. Other times, an investor was sold something they did not und...

13 Maj 47min

Elder Exploitation

Elder Exploitation

Aging parents often rely on the people closest to them for help, but what happens when that help becomes a way to take control? For Charles Wallace, the warning signs started small. His mother's fridg...

6 Maj 39min

Populärt inom Politik & nyheter

svenska-fall
aftonbladet-krim
p3-krim
spar
motiv
de-fyras-gang
tv4-nyheterna-story
rss-expressen-dok
flashback-forever
aftonbladet-daily
rss-sanning-konsekvens
rss-vad-fan-hande
rss-krimreportrarna
svd-ledarredaktionen
rss-flodet
rss-frandfors-horna
kungligt
svd-dokumentara-berattelser-2
grans
dagens-eko