Skip to content

Layman's Magazine

Everyday's tech for the everyday's layman

Menu
  • Home
  • News
  • Best picks
  • How To
  • Reviews
  • Other
    • Smart Home
    • Smartphones & tablets
    • Computers
    • Gadgets
    • Streaming
    • Gaming
    • Web
    • Software
    • Hardware
    • Cybersecurity
    • VR
    • Design
    • Programming
    • AI
    • Database
    • Network
    • Audio
    • Video
    • Crypto
    • Other technologies
  • Privacy Policy
Menu
shallow focus photo of person driving Honda car

Hackers can remotely unlock and start Honda vehicles

Posted on July 10, 2022

Researchers recently discovered a flaw that might let hackers remotely unlock and start a variety of Honda car models. Ten of Honda’s most well-known vehicles are included among the impacted models as being at risk. Even worse, according to the latest research, the vulnerability might exist in all Honda vehicles produced between 2012 and 2022.

The security vulnerability, presented by researchers known as RollingPWN, takes advantage of a feature in Honda’s keyless entry system. When owners push the fob button, the present entry system uses a rolling code model to generate a new entry code. To prevent replay attacks, the preceding ones should be rendered useless once they have been given. Instead, scientists Wesley Li and Kevin 26000 found that the old codes could be rolled back and utilized to gain unauthorized access to the car.

Ladies and gentlemen, it is my honor to presenting you the Rolling-Pwn attack research on Honda Keyfob system. (https://t.co/UqJEJofxtr) pic.twitter.com/3ZccqfJrUa

— Kevin2600 (@Kevin2600) July 7, 2022

The vulnerability was investigated across a variety of Honda cars from 2012 through 2022. The list of test cars that are affected includes:

  • Honda Civic 2012
  • Honda XR-V 2018
  • Honda CR-V 2020
  • Honda Accord 2020
  • Honda Odyssey 2020
  • Honda Inspire 2021
  • Honda Fit 2022
  • Honda Civic 2022
  • Honda VE-1 2022
  • Honda Breeze 2022

Fixing the vulnerability can be as difficult as finding the exploit. Honda could fix the issue by sending out an over-the-air (OTA) software update, but many of the afflicted vehicles don’t support it. A recall scenario is unlikely because there are so many more vehicles that could be affected.

Research is still being done to find out how widespread the vulnerability is. Li and Kevin26000 have a strong suspicion that other automakers may also be affected by the problem given the nature of the attack.

Source : TechSpot

Tags

academics ai android apple artificial intelligence comet crypto design elon musk ESA gaming google google scholar intel interceptor iphone Java keywords linux machine learning mysql NASA overleaf pattern pico H pico W pico WH plagiarism checker python R raspberry Pi reasearchgate research reverso robots search engine optimization SEO spacex spam telescope tesla testing twitter whatsapp youtube

©2023 Layman's Magazine | Design: Newspaperly WordPress Theme
Manage Cookie Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
Manage options Manage services Manage vendors Read more about these purposes
View preferences
{title} {title} {title}