BlackHat feature | Dangerous, hackers suddenly turn a high-speed car

Imagine driving through the azure beach and wondering if you have the opportunity to swim here. Suddenly, your car's steering wheel suddenly spins and it's too late to react. Your dream of swimming at Blue Ocean has been realized with the car.

This is not because you bought a car that would "read". You are very likely to provoke a car hack.

There are two of the most famous car hackers in the world: Charlie Miller & Chris Wallacek.

Charlie Miller & Chris Wallacek

At BlackHat USA, the world's top hacking party in 2015, they staged a car break show that shocked the world. In that presentation, they demonstrated the remote intrusion into the Jeep on-board system, which remotely controlled various functions on the startup vehicle, including deceleration, shutting down the engine, braking or letting the brakes fail. This world-famous game has caught the world in shock.

This crackdown directly led to the global recall of 1.4 million vehicles by Chrysler, which produces Jeep, and the market value evaporated by 40 billion US dollars in an instant. There is no doubt that Chrysler saw these two hackers hate teeth.

The entire Chrysler global staff had been busy for half a year and it was hard to save the fire. They heard a message: The two hackers will return to BlackHat 2016. They will use a new method to crack a car. This car, also, J, e, e, p. "Breakout" is probably what Chrysler says.

Charlie Miller & Chris Wallacek at BlackHat 2016

Dracula's "high speed steering"

The Jeep “boiled chicken” who had been abused for hundreds of times had a new “scar” this time. One of the most amazed is the "high-speed controlled steering." Although Charlie and Chris had achieved a "steering" attack on the car last year, there were many restrictions on that attack, the most important of which was that the car must be driven at extremely low speeds. The extremely low speed here is generally less than 15 km/h. This is because hackers have used the car's automatic parking system to gain control of the steering wheel.

There is no doubt that at low speeds, even if the steering wheel of a dark car causes a sudden turn, the driver has enough time to correct his direction, causing only a slight scratch. However, the steering wheel suddenly shakes at high speed. . . (I know what you think about your brain)

http://player.youku.com/embed/XMTY3MTc2NTY5Mg

(Poke the link to see the video)

According to two hackers, realizing the high-speed steering of automobiles requires two key steps:

1, "Joe" engine control module (Engine Control Unit referred to as ECU). The ECU is responsible for the rapid and automotive CAN bus (the CAN bus is the central nerve of the car, responsible for collecting and summarizing control information) exchanging information and telling it when the steering wheel can be controlled.


2, deceive the steering wheel. In 2015, the problem they did not solve was that the steering wheel would automatically ignore control commands from the CAN bus at high speeds. However, today they finally found a loophole that could deceive the processing logic on the steering wheel and mislead the steering wheel into thinking that the car is still driving at a low speed.

At this point, we're done. Let's take a look at the scenes when two hackers played the "Bully Car" video on the spot.

http://player.youku.com/embed/XMTY3MTc1ODgxMg

(Poke the link to see the video)

Take another gesture and come again.

http://player.youku.com/embed/XMTY3MTc1ODUwMA

Fatal weaknesses

Don't panic, don't hurry to find Chrysler returns. Two hackers admitted that the attack was far less intense than last year's attack:

In fact, we did not implement remote attacks as we did last year. We must connect the computer to the car's control interface to achieve this operation.

This is very important. It is believed that no one will see a stranger sitting in the passenger seat and holding a computer with a line press. . .

Actually, as early as Charlie and Chris came to BlackHat, they have announced their latest research results on Twitter. The cold-skinned Chrysler, after earnestly studying their "latest results," also uttered a breath and issued the following statement:

Chrysler’s statement

The statement is long, but the core meaning is simple:

I admit that these two guys are embarrassed, but I have evidence that their gameplay cannot achieve remote attacks at all. (I just do not recall, nnd.)

However, the Uber employees of Charlie and Chris were not sent to the entire Chrysler. They also generously placed Chrysler. (Maybe it's not known that Chrysler will be able to zoom in and out next year.) What they enjoy most is the joy and fullness of the car.

Charlie Miller sunk himself out of the roadbed's joyful screen on Twitter a week ago

At the scene, they also recalled the anecdote that caused the car to break out of the roadbed, which even alerted the police. Finally, farmers in the roadside cornfield uncle helped them pull the car out. (Of course, it took 10 US dollars to spend).

Charlie and Chris showed hackers on the scene that they had received a bunch of tickets when they researched the car crack. For them, these tickets are precisely the ticket to freedom.

Second-hand Power Generator

Second-Hand Power Generator,Power Generator,Diesel Generator,Electric Generator

Shaoxing AnFu Energy Equipment Co.Ltd , https://www.sxanfu.com

Posted on