Skip to main content

Big truck hijacking vulnerability should be a wake-up call to trucking industry

Big trucks are more vulnerable to hacking than cars. In preparation for the Usenix Workshop on Offensive Technologies (WOOT ’16) security event in Austin, Texas, next week, researchers from the University of Michigan’s Transportation Research Institute hacked multiple systems in a big rig truck to demonstrate its vulnerability, according to Wired.

In 2015, another team demonstrated taking over a Jeep Cherokee remotely via the vehicle’s Uconnect cell-based system. That remote hijack sent a loud wake-up call to the consumer car world. Hijacking trucks and buses may be even easier. Individual automakers and car models from the same manufacturer use different codes, but most commercial trucks — from tractor trailers and school buses to garbage trucks and cement mixers — use the same communication standard. Once you know how to hijack one big truck, you can use the same codes with most others.

Recommended Videos

“These trucks carry hazard chemicals and large loads. And they’re the backbone of our economy,” researcher Bill Hass said. “If you can cause them to have unintended acceleration … I don’t think it’s too hard to figure out how many bad things could happen with this.”

The team created several videos showing how they took control of various systems in a truck and a school bus. The researchers interfered with braking systems, took control of engine RPMs, and sent faulty readings to dashboard indicators.

The common link between the vehicles was the J1939 open standard used by the on-board diagnostic systems (OBDS). The Michigan team used a laptop while sitting in the vehicles to access the vehicles’ system via the diagnostic port for this demonstration project, not via a wireless connection, but the point was made.

Heavy trucks, just like consumer vehicles, increasingly connect to the outside world via cell-phone and other systems. Breaking through to the OBDS via remote wireless remains a further step, but according to Wired, another study found trucks vulnerable to remote attack via an insecure location-tracking dongle.

WOOT ’16, which takes place during the Usenix Security Symposium, August 10-12, is a two-day workshop of presentations on cryptographic attacks, mobile threats, evading malware detection, creative denial of service, vehicle hacking, and other security threats and issues, to bring them to the attention of affected industries and security firms that serve them.

Bruce Brown
Bruce Brown Contributing Editor   As a Contributing Editor to the Auto teams at Digital Trends and TheManual.com, Bruce…
Tesla and Elon Musk sued over use of AI image at Cybercab event
tesla and spacex CEO elon musk stylized image

Tesla’s recent We, Robot presentation has run into trouble, with one of the production companies behind Blade Runner 2049 suing Tesla and its CEO, Elon Musk, for alleged copyright infringement.

Tesla used the glitzy October 10 event to unveil its Cybercab and Robovan, and also to showcase the latest version of its Optimus humanoid robot.

Read more
Qualcomm wants to power your next car with the Snapdragon Cockpit and Ride Elite platforms
Qualcomm Snapdragon Cockpit Elite and Ride Elite automotive platforms

It’s been a big year for Qualcomm. Alongside its massive launch into laptop chips through the Snapdragon X Elite series, Qualcomm is now entering the automotive space. The company has announced the new Qualcomm Snapdragon Cockpit Elite and Snapdragon Ride Elite platforms at its annual Snapdragon Summit, which it flew me out to attend.

The two platforms are designed for different purposes, and can be used togetheror separately. The Snapdragon Cockpit Elite is built for in-vehicle infotainment systems and services, while the Snapdragon Ride Elite is built to power autonomous vehicle systems, including all the cameras and sensors that go into those systems.

Read more
Scout Traveler and Scout Terra forge a new path for EVs
Scout Traveler and Scout Terra.

Electric vehicles are inseparable from newness, whether it’s new tech, new designs, or new companies like Rivian, Lucid, and Tesla. But the Volkswagen Group’s new EV-only brand also relies heavily on the past.

Unveiled Thursday, the Scout Traveler electric SUV and Scout Terra electric pickup truck are modern interpretations of the classic International Harvester Scout. Manufactured from 1961 to 1980, the original Scout helped popularize the idea of the rugged, off-road-capable utility vehicle, setting the stage for modern SUVs.

Read more