Am I seriously the only one who saw bad things coming out of this?
This is an actual commercial that aired a couple years ago:
Hey! You know what I want in a vehicle? I want a third party to be able to locate and disable it at any time without my permission. Yeah- That’s the ticket! There’snowaythatcould ever be abused!
I remember that ad. I couldn’t believe it - not that they did it, but that they advertised it. Who would want that?! And how could a remote disablement feature NOT get hacked? You’re right, it’s just asking for trouble.
Yes. Cars are just like your computer — parts are selectively downgraded in the firmware for different price points and market differentiation. If you buy secondhand when you don’t have to worry about warranties any more, you can get the Engine Management Unit and/or gearbox reprogrammed to improve power and fuel economy. Just like overclocking your CPU. Except DRM means its hard to get the tools to do it yourself.
Who’s smart idea was it to have the car’s operational computer connected to the network at all?
All that should be a closed, wired system. A secondary diagnostic and entertainment network that’s connected to the net is just fine, there’s probably still security issues there, but no real physical vulnerability.
Perhaps there could be an aftermarket service that’d reinstall the devices that aren’t involved in vehicle control onto a separate CAN bus, possibly with a computer filtering messages that have to go between the secure and the insecure bus?