• Login
No Result
View All Result
My Blog
  • Home
  • World
  • Politics
  • Business
  • Science
  • Tech
    Create More Content with This AI Writing Tool — Just $39 for Life

    Create More Content with This AI Writing Tool — Just $39 for Life

    The Pros and Cons of Using AI to Write Your Book

    The Pros and Cons of Using AI to Write Your Book

    ‘Build Your Business From the Perspective Of People’: CureBay’s Founder

    ‘Build Your Business From the Perspective Of People’: CureBay’s Founder

    How Digital Payments Are Disrupting Our Entire Ecosystem

    How Digital Payments Are Disrupting Our Entire Ecosystem

    4 Ways To Use ChatGPT

    4 Ways To Use ChatGPT

    Learn Python from Home with This Info-Packed Bundle with Courses Less Than $3 Each

    Learn Python from Home with This Info-Packed Bundle with Courses Less Than $3 Each

    Trending Tags

    • Sillicon Valley
    • Climate Change
    • Election Results
    • Flat Earth
    • Golden Globes
    • MotoGP 2017
    • Mr. Robot
  • Entertainment
    • All
    • Movie
    • Music
    • Sports
    The ‘Dune’ Miniseries Is a Fascinating Piece of History

    The ‘Dune’ Miniseries Is a Fascinating Piece of History

    Coinbase Offered Them Dream Jobs—and Then Took Them Away

    Coinbase Offered Them Dream Jobs—and Then Took Them Away

    The January 6 Hearings Are Fighting for Your Attention

    The January 6 Hearings Are Fighting for Your Attention

    12 Best Messenger Bags (2022): Crossbody, Slings, Shoulder Bags

    12 Best Messenger Bags (2022): Crossbody, Slings, Shoulder Bags

    Big Tech Has Become a Creature of the Swamp

    Big Tech Has Become a Creature of the Swamp

    Sea to Summit Alto TR1 Review: A Fantastic Ultralight Tent

    Sea to Summit Alto TR1 Review: A Fantastic Ultralight Tent

    Prediction Engines Are Like Karma: You Get What You Stream

    Prediction Engines Are Like Karma: You Get What You Stream

    ‘The Quarry’ Lets You Experience What’s Great About Slasher Films

    ‘The Quarry’ Lets You Experience What’s Great About Slasher Films

    Summer Game Fest’s Biggest Announcement? A ‘Last of Us’ Remake

    Summer Game Fest’s Biggest Announcement? A ‘Last of Us’ Remake

  • Lifestyle
    • All
    • Fashion
    • Health
    • Travel
    nurse

    Everything You Need To Know About Nurse Residency

    Drug detox

    Are you the right candidate for medical detox?

    The Benefit of Using Sunscreen Protection

    Gift Ideas for Celebrating a Loved One’s College Acceptance

    What are the major reasons to form gall bladder stones?

    The ‘Dune’ Miniseries Is a Fascinating Piece of History

    The ‘Dune’ Miniseries Is a Fascinating Piece of History

    Coinbase Offered Them Dream Jobs—and Then Took Them Away

    Coinbase Offered Them Dream Jobs—and Then Took Them Away

    The January 6 Hearings Are Fighting for Your Attention

    The January 6 Hearings Are Fighting for Your Attention

    12 Best Messenger Bags (2022): Crossbody, Slings, Shoulder Bags

    12 Best Messenger Bags (2022): Crossbody, Slings, Shoulder Bags

    Big Tech Has Become a Creature of the Swamp

    Big Tech Has Become a Creature of the Swamp

    Trending Tags

    • Golden Globes
    • Mr. Robot
    • MotoGP 2017
    • Climate Change
    • Flat Earth
  • More
    • Directions
  • Home
  • World
  • Politics
  • Business
  • Science
  • Tech
    Create More Content with This AI Writing Tool — Just $39 for Life

    Create More Content with This AI Writing Tool — Just $39 for Life

    The Pros and Cons of Using AI to Write Your Book

    The Pros and Cons of Using AI to Write Your Book

    ‘Build Your Business From the Perspective Of People’: CureBay’s Founder

    ‘Build Your Business From the Perspective Of People’: CureBay’s Founder

    How Digital Payments Are Disrupting Our Entire Ecosystem

    How Digital Payments Are Disrupting Our Entire Ecosystem

    4 Ways To Use ChatGPT

    4 Ways To Use ChatGPT

    Learn Python from Home with This Info-Packed Bundle with Courses Less Than $3 Each

    Learn Python from Home with This Info-Packed Bundle with Courses Less Than $3 Each

    Trending Tags

    • Sillicon Valley
    • Climate Change
    • Election Results
    • Flat Earth
    • Golden Globes
    • MotoGP 2017
    • Mr. Robot
  • Entertainment
    • All
    • Movie
    • Music
    • Sports
    The ‘Dune’ Miniseries Is a Fascinating Piece of History

    The ‘Dune’ Miniseries Is a Fascinating Piece of History

    Coinbase Offered Them Dream Jobs—and Then Took Them Away

    Coinbase Offered Them Dream Jobs—and Then Took Them Away

    The January 6 Hearings Are Fighting for Your Attention

    The January 6 Hearings Are Fighting for Your Attention

    12 Best Messenger Bags (2022): Crossbody, Slings, Shoulder Bags

    12 Best Messenger Bags (2022): Crossbody, Slings, Shoulder Bags

    Big Tech Has Become a Creature of the Swamp

    Big Tech Has Become a Creature of the Swamp

    Sea to Summit Alto TR1 Review: A Fantastic Ultralight Tent

    Sea to Summit Alto TR1 Review: A Fantastic Ultralight Tent

    Prediction Engines Are Like Karma: You Get What You Stream

    Prediction Engines Are Like Karma: You Get What You Stream

    ‘The Quarry’ Lets You Experience What’s Great About Slasher Films

    ‘The Quarry’ Lets You Experience What’s Great About Slasher Films

    Summer Game Fest’s Biggest Announcement? A ‘Last of Us’ Remake

    Summer Game Fest’s Biggest Announcement? A ‘Last of Us’ Remake

  • Lifestyle
    • All
    • Fashion
    • Health
    • Travel
    nurse

    Everything You Need To Know About Nurse Residency

    Drug detox

    Are you the right candidate for medical detox?

    The Benefit of Using Sunscreen Protection

    Gift Ideas for Celebrating a Loved One’s College Acceptance

    What are the major reasons to form gall bladder stones?

    The ‘Dune’ Miniseries Is a Fascinating Piece of History

    The ‘Dune’ Miniseries Is a Fascinating Piece of History

    Coinbase Offered Them Dream Jobs—and Then Took Them Away

    Coinbase Offered Them Dream Jobs—and Then Took Them Away

    The January 6 Hearings Are Fighting for Your Attention

    The January 6 Hearings Are Fighting for Your Attention

    12 Best Messenger Bags (2022): Crossbody, Slings, Shoulder Bags

    12 Best Messenger Bags (2022): Crossbody, Slings, Shoulder Bags

    Big Tech Has Become a Creature of the Swamp

    Big Tech Has Become a Creature of the Swamp

    Trending Tags

    • Golden Globes
    • Mr. Robot
    • MotoGP 2017
    • Climate Change
    • Flat Earth
  • More
    • Directions
No Result
View All Result
My Blog
No Result
View All Result
Home Education

Hackers Can Steal Your Tesla by Creating Their Own Personal Keys

by lacygibson
June 10, 2022
in Education, Entertainment, Fashion, Movie, Music, National, Politics, Science, Sports, World
0
Hackers Can Steal Your Tesla by Creating Their Own Personal Keys
0
SHARES
2
VIEWS
Share on FacebookShare on Twitter


When the driver entered the car after unlocking it with the NFC card, the thief began exchanging messages between the weaponized Teslakee and the car. The messages register the thief’s chosen key with the car even before the driver drives away. From then on, thieves can use the key to unlock, start and shut down the car. There’s no indication of anything wrong with the in-vehicle display or the legitimate Tesla app.

Herfurt has successfully used the attack on the Tesla Model 3 and Y. He hasn’t tested the method on the new facelifted S and X models from 2021 onwards, but he thinks they’re also vulnerable because they use the same native support as the phone. – Key with BLE.

Tesla did not respond to emails seeking comment on this post.

Would you say VCSec?

The vulnerability is the result of NFC cards playing a dual role. It doesn’t just open a locked car and start it; it’s also used to authorize key management.

Herford said:

The attack takes advantage of the way Tesla handles the unlocking process via an NFC card. This works because Tesla’s authorization method is broken. There is no connection between the online account world and the offline BLE world. Any attacker who can see the vehicle’s Bluetooth LE advertisement can send it a VCSEC message. This doesn’t work with official apps, but apps that use Tesla’s specific BLE protocol are also possible…allowing attackers to register keys for arbitrary vehicles. Tesla Base will communicate with any vehicle if told.

Herfurt created Teslalakee as Tampa Programwhich “provides tools and information about the VCSEC protocol used by Tesla accessories and the Tesla app to control the vehicle via Bluetooth LE.” Herford is Sanlian Groupa research and hacker group focused on BLE.

This attack is technically easy to implement, but the mechanics of staking out an unattended vehicle, waiting for or forcing the owner to unlock it using an NFC card, and then catching up to the car and stealing it can be cumbersome. This approach is unlikely to be practical in many theft scenarios, but for some it seems to work.

With Tesla radio silenced about the weakness, there’s only so much the owner can do about it. One countermeasure is to set up Pin2Drive to prevent a thief using this method from starting the vehicle, but it will not prevent the thief from entering the car when it is locked. Another protection is to periodically check the list of keys authorized to unlock and start the car through a process Tesla calls “whitelisting.” Tesla owners may wish to perform this check after handing over the NFC card to an untrusted mechanic or valet parking attendant.

Due to the lack of response, Herford said he received information from Tesla about his 2019 then again last yearAnd he’s not holding his breath that the company will fix the problem.

“My impression is that they always already know and don’t really change things,” he said. “This time, there’s no way Tesla didn’t know about this poor execution. So to me, it doesn’t make sense to talk to Tesla beforehand.”

This story originally appeared in Ars Technica.

Tags: CreatinghackerHackersKeysPersonalStealtechnologyTesla
lacygibson

lacygibson

Next Post
Summer Game Fest’s Biggest Announcement? A ‘Last of Us’ Remake

Summer Game Fest’s Biggest Announcement? A 'Last of Us' Remake

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Recommended

7 Best Laptops and Tablets for College Students (2022): Cheap, Gaming, Portable

7 Best Laptops and Tablets for College Students (2022): Cheap, Gaming, Portable

5 months ago
NASA is Crowdsourcing Cloud Research—on Mars

NASA is Crowdsourcing Cloud Research—on Mars

6 months ago

Popular News

    Connect with us

    • Contact
    • Read Latest News Around The World – Frapios
    Write Us at: [email protected]

    Copyright Reserved © 2022

    No Result
    View All Result
    • Home
    • Politics
    • World
    • Business
    • Science
    • National
    • Entertainment
    • Gaming
    • Movie
    • Music
    • Sports
    • Fashion
    • Lifestyle
    • Travel
    • Tech
    • Health
    • Food

    Copyright Reserved © 2022

    Welcome Back!

    Login to your account below

    Forgotten Password?

    Retrieve your password

    Please enter your username or email address to reset your password.

    Log In