E Amazings
  • Home
  • Automotive
  • Business
  • CBD
  • Crypto
  • Education
  • Entertainment
  • Fashion
  • Finance
  • Health
  • Home Improvement
  • Law \ Legal
  • News
  • Shopping
  • Sports
  • Technology
  • Travel

Subscribe to Updates

Get the latest creative news from FooBar about art, design and business.

What's Hot

Iran Imports $10 Million Worth of Goods in Crypto (Report)

August 10, 2022

Smoking Meat Finds Natural Home In The Cloud

August 9, 2022

March session in Kashmir 2022 and Jammu and Kashmir schools? JKBOSE moots proposal – Details

August 9, 2022
Facebook Twitter Instagram
E Amazings
  • Home
  • Automotive
  • Business
  • CBD
  • Crypto
  • Education
  • Entertainment
  • Fashion
  • Finance
  • Health
  • Home Improvement
  • Law \ Legal
  • News
  • Shopping
  • Sports
  • Technology
  • Travel
Facebook Twitter Instagram
E Amazings
You are at:Home»Technology»Unlock Any (Honda) Car | Hackaday
Technology

Unlock Any (Honda) Car | Hackaday

Paul EasterBy Paul EasterJuly 8, 2022No Comments2 Mins Read
Facebook Twitter Pinterest LinkedIn Tumblr Email
Share
Facebook Twitter Pinterest WhatsApp Email


Honda cars have been found to be severely  vulnerable to a newly published Rolling PWN attack, letting you remotely open the car doors or even start the engine. So far it’s only been proven on Hondas, but ten out of ten models that [kevin2600] tested were vulnerable, leading him to conclude that all Honda vehicles on the market can probably be opened in this way. We simply don’t know yet if it affects other vendors, but in principle it could. This vulnerability has been assigned the CVE-2021-46145.

[kevin2600] goes in depth on the implications of the attack but doesn’t publish many details. [Wesley Li], who discovered the same flaw independently, goes into more technical detail. The hack appears to replay a series of previously valid codes that resets the internal PRNG counter to an older state, allowing the attacker to reuse the known prior keys. Thus, it requires some eavesdropping on previous keyfob-car communication, but this should be easy to set up with a cheap SDR and an SBC of your choice.

If you have one of the models affected, that’s bad news, because Honda probably won’t respond anyway. The researcher contacted Honda customer support weeks ago, and hasn’t received a reply yet. Why customer support? Because Honda doesn’t have a security department to submit such an issue to. And even if they did, just a few months ago, Honda has said they will not be doing any kind of mitigation for “car unlock” vulnerabilities.

As it stands, all these Honda cars affected might just be out there for the taking. This is not the first time Honda is found botching a rolling code implementation – in fact, it’s the second time this year. Perhaps, this string of vulnerabilities is just karma for Honda striking down all those replacement part 3D models, but one thing is for sure – they had better create a proper department for handling security issues.



Source link

Paul Easter

Related Posts

Smoking Meat Finds Natural Home In The Cloud

By Paul EasterAugust 9, 2022

Student Competition Badge Bears Custom Silicon

By Paul EasterAugust 9, 2022

Up Your Desk Toy Game With This 3D Printed Escalator

By Paul EasterAugust 9, 2022

2022 Hackaday Prize: Congratulations To The Winners Of The Hack It Back Challenge

By Paul EasterAugust 9, 2022
Add A Comment

Comments are closed.

Our Picks

Iran Imports $10 Million Worth of Goods in Crypto (Report)

By Paul EasterAugust 10, 2022

Smoking Meat Finds Natural Home In The Cloud

By Paul EasterAugust 9, 2022

March session in Kashmir 2022 and Jammu and Kashmir schools? JKBOSE moots proposal – Details

By Paul EasterAugust 9, 2022
Recent Posts
  • Iran Imports $10 Million Worth of Goods in Crypto (Report) August 10, 2022
  • Smoking Meat Finds Natural Home In The Cloud August 9, 2022
  • March session in Kashmir 2022 and Jammu and Kashmir schools? JKBOSE moots proposal – Details August 9, 2022
  • Ethereum Merge Attracts Institutional Investors: Report August 9, 2022
  • Multas a los vendedores ambulantes aumentaron durante el primer año del DCWP August 9, 2022
  • Ashish Kacholia stock: This packaging company’s shares hit new lifetime high on Monday; brokerages recommend Buy – check price target August 9, 2022
  • Stock Markets: REVEALED! Why world economies fearing recession but India is emerging even stronger August 9, 2022
Archives
  • August 2022
  • July 2022
  • June 2022
Facebook Twitter Instagram Pinterest TikTok
  • Home
© 2022 E Amazings - All Rights Reserved.

Type above and press Enter to search. Press Esc to cancel.