{"id":4250,"date":"2016-09-20T19:14:45","date_gmt":"2016-09-20T13:44:45","guid":{"rendered":"https:\/\/www.qadit.com\/blog\/?p=4250"},"modified":"2016-09-20T19:14:45","modified_gmt":"2016-09-20T13:44:45","slug":"chinese-researchers-hijack-tesla-cars-from-afar","status":"publish","type":"post","link":"https:\/\/qadit.com\/blog\/chinese-researchers-hijack-tesla-cars-from-afar\/","title":{"rendered":"Chinese researchers hijack Tesla cars from afar"},"content":{"rendered":"<p><img decoding=\"async\" src=\"https:\/\/ift.tt\/2crlDH5\" title=\"Chinese researchers hijack Tesla cars from afar - Help Net Security\"><\/p>\n<div>\n<div class=\"entry-content\">\n<p>Tesla car owners are urged to update their car\u2019s firmware to the latest version available, as it fixes security vulnerabilities that can be exploited remotely to take control of the car\u2019s brakes and other, less critical components.<\/p>\n<p>The vulnerabilities were discovered by researchers from Tencent\u2019s Keen Security Lab, and responsibly disclosed to Tesla. The company\u2019s Product Security Team confirmed them, and implemented fixes in the latest version of the firmware.<\/p>\n<p>Tencent\u2019s researchers understandably didn\u2019t reveal details about the flaws, but have provided a video demonstration of the attacks:<\/p>\n<p>VIDEO<\/p>\n<p>They have managed to remotely open various Tesla cars\u2019 sunroof, turn on the blinkers, move the car seat, and open doors, all while the cars were in parking mode. But they have also managed to control windshield wipers, fold the side rearview mirrors, open the trunk, and manipulate the brakes from 12 miles away.<\/p>\n<p>\u201cAs far as we know, this is the first case of remote attack which compromises CAN Bus to achieve remote controls on Tesla cars. We have verified the attack vector on multiple varieties of Tesla Model S. It is reasonable to assume that other Tesla models are affected,\u201d they <a href=\"https:\/\/ift.tt\/2dft4m2\" target=\"_blank\">noted<\/a>.<\/p>\n<p>\u201cThe issue demonstrated is only triggered when the web browser is used (web browser functionality not enabled in Australia). Our realistic estimate is that the risk to our customers was very low, but this did not stop us from responding quickly,\u201d a Tesla spokesperson <a href=\"https:\/\/ift.tt\/2cQBxYH\" target=\"_blank\" rel=\"nofollow\">told<\/a> ZDNet.<\/p>\n<p>The software update fixing the flaws has already been deployed over-the-air, so details about them should soon be revealed.<\/p>\n<p class=\"hnst-tag-specific-content\">\n<\/p><\/div>\n<\/p><\/div>\n<p>via https:\/\/ift.tt\/2cro7F6<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Tesla car owners are urged to update their car\u2019s firmware to the latest version available, as it fixes security vulnerabilities that can be exploited remotely to take control of the car\u2019s brakes and other, less critical components. The vulnerabilities were discovered by researchers from Tencent\u2019s Keen Security Lab, and responsibly disclosed to Tesla. The company\u2019s &hellip; <\/p>\n<p class=\"link-more\"><a href=\"https:\/\/qadit.com\/blog\/chinese-researchers-hijack-tesla-cars-from-afar\/\" class=\"more-link\">Continue reading<span class=\"screen-reader-text\"> &#8220;Chinese researchers hijack Tesla cars from afar&#8221;<\/span><\/a><\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"jetpack_post_was_ever_published":false,"_jetpack_newsletter_access":"","_jetpack_dont_email_post_to_subs":false,"_jetpack_newsletter_tier_id":0,"_jetpack_memberships_contains_paywalled_content":false,"_jetpack_memberships_contains_paid_content":false,"footnotes":"","jetpack_publicize_message":"","jetpack_publicize_feature_enabled":true,"jetpack_social_post_already_shared":false,"jetpack_social_options":{"image_generator_settings":{"template":"highway","enabled":false},"version":2}},"categories":[12],"tags":[],"class_list":["post-4250","post","type-post","status-publish","format-standard","hentry","category-itsec"],"jetpack_publicize_connections":[],"jetpack_featured_media_url":"","jetpack_sharing_enabled":true,"jetpack_shortlink":"https:\/\/wp.me\/p9AH7Q-16y","_links":{"self":[{"href":"https:\/\/qadit.com\/blog\/wp-json\/wp\/v2\/posts\/4250","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/qadit.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/qadit.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/qadit.com\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/qadit.com\/blog\/wp-json\/wp\/v2\/comments?post=4250"}],"version-history":[{"count":1,"href":"https:\/\/qadit.com\/blog\/wp-json\/wp\/v2\/posts\/4250\/revisions"}],"predecessor-version":[{"id":4251,"href":"https:\/\/qadit.com\/blog\/wp-json\/wp\/v2\/posts\/4250\/revisions\/4251"}],"wp:attachment":[{"href":"https:\/\/qadit.com\/blog\/wp-json\/wp\/v2\/media?parent=4250"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/qadit.com\/blog\/wp-json\/wp\/v2\/categories?post=4250"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/qadit.com\/blog\/wp-json\/wp\/v2\/tags?post=4250"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}