MOST TRUSTED NEWSWIRE PRESS RELEASE DISTRIBUTION
PRTODAY / NewswireToday press release distribution service network
Written by / Agency / Source: Imec
Check Ads Availability|e-mail Article

Are you the owner of this article?, Turn it PREMIUM with your LOGO instead - and make it 3rd party Ads-Free! within the next hour!

Belgian Security Researchers from KU Leuven and Imec Demonstrate Serious Flaws in Tesla Model X Keyless Entry System - Researchers from COSIC, an imec research group at the University of Leuven in Belgium, have discovered major security flaws in the keyless entry system of the Tesla Model X - KULeuven.be / imec-Int.com
Belgian Security Researchers from KU Leuven and Imec Demonstrate Serious Flaws in Tesla Model X Keyless Entry System

 

NewswireToday - /newswire/ - Leuven, Belgium, 2020/11/23 - Researchers from COSIC, an imec research group at the University of Leuven in Belgium, have discovered major security flaws in the keyless entry system of the Tesla Model X - KULeuven.be / imec-Int.com.

   
 
Your Banner Ad Here instead - Showing along with ALL Articles covering Automotive / Trucking / RV Announcements

Replace these Affiliate Programs at ANYTIME! Your banner here within the next hour. Learn How!


 

The same researchers hacked the Tesla Model S keyless entry system and now detail how the security measures implemented in the more recent Tesla Model X can be bypassed. They demonstrate how the battery powered Tesla Model X priced at over $100.000 US can be stolen in a few minutes. Tesla has released an over-the-air software update to mitigate these issues.

The Tesla Model X key fob allows the owner to automatically unlock their car by approaching the vehicle, or by pressing a button. To facilitate the integration with phone-as-key solutions, which allow a smartphone APP to unlock the car, the use of Bluetooth Low Energy (BLE) is becoming more prevalent in key fobs. The Tesla Model X key fob is no different and uses BLE to communicate with the vehicle.

“Using a modified Electronic Control Unit (ECU), obtained from a salvage Tesla Model X, we were able to wirelessly (up to 5m distance) force key fobs to advertise themselves as connectable BLE devices. By reverse engineering the Tesla Model X key fob we discovered that the BLE interface allows for remote updates of the software running on the BLE chip. As this update mechanism was not properly secured, we were able to wirelessly compromise a key fob and take full control over it. Subsequently we could obtain valid unlock messages to unlock the car later on”, says Lennert Wouters, PhD student at the COSIC research group.

“With the ability to unlock the car we could then connect to the diagnostic interface normally used by service technicians. Because of a vulnerability in the implementation of the pairing protocol we can pair a modified key fob to the car, providing us with permanent access and the ability to drive off with the car”, Wouters adds.

Two weaknesses exposed
“To summarize, we can steal a Tesla Model X vehicle by first approaching a victim key fob within about 5 meters to wake up the key fob. Afterwards we can send our own software to the key fob in order to gain full control over it. This process takes 1.5 minutes but can be easily performed over a range of more than 30 meters. After compromising the key fob, we can obtain valid commands that will allow unlocking the target vehicle. After approaching the vehicle and unlocking it we can access the diagnostic connector inside the vehicle. By connecting to the diagnostic connector, we can pair a modified key fob to the car. The newly paired key fob allows us to then start the car and drive off. By exploiting these two weaknesses in the Tesla Model X keyless entry system we are thus able to steal the car in a few minutes”, says Dr. Benedikt Gierlichs, researcher at COSIC.

The proof of concept attack was realized using a self-made device (see the video) built from inexpensive equipment: a Raspberry Pi computer ($35) with a CAN shield ($30), a modified key fob and ECU from a salvage vehicle ($100 on eBay) and a LiPo battery ($30).

The Belgian researchers first informed Tesla of the identified issues on the 17th of August 2020. Tesla confirmed the vulnerabilities, awarded their findings with a bug bounty and started working on security updates. As part of the 2020.48 over-the-air software update, that is now being rolled out, a firmware update will be pushed to the key fob.

About imec

Imec (imec-int.com) is a world-leading research and innovation hub in nanoelectronics and digital technologies. The combination of our widely acclaimed leadership in microchip technology and profound software and ICT expertise is what makes us unique. By leveraging our world-class infrastructure and local and global ecosystem of partners across a multitude of industries, we create groundbreaking innovation in application domains such as healthcare, smart cities and mobility, logistics and manufacturing, energy and education.

As a trusted partner for companies, start-ups and universities we bring together more than 4,000 brilliant minds from over 97 nationalities. Imec is headquartered in Leuven, Belgium and has distributed R&D groups at a number of Flemish universities, in the Netherlands, Taiwan, USA, and offices in China, India and Japan. In 2018, imec's revenue (P&L) totaled 583 million euro.

Imec is a registered trademark for the activities of IMEC International (a legal entity set up under Belgian law as a "stichting van openbaar nut”), imec Belgium (IMEC vzw supported by the Government of Flanders), imec the Netherlands (Stichting IMEC Nederland, part of Holst Centre which is supported by the Dutch Government), imec Taiwan (IMEC Taiwan Co.), imec China (IMEC Microelectronics (Shanghai) Co. Ltd.), imec India (Imec India Private Limited) and imec Florida (IMEC USA nanoelectronics design center).

About KU Leuven

KU Leuven (kuleuven.be) is Europe’s most innovative university. Located in Belgium, it is dedicated to research, education, and service to society. KU Leuven is a founding member of the League of European Research Universities (LERU) and has a strong European and international orientation. Our scientists conduct basic and applied research in a comprehensive range of disciplines. University Hospitals Leuven, our network of research hospitals, provides high-quality healthcare and develops new therapeutic and diagnostic insights with an emphasis on translational research. The university welcomes more than 50,000 students from over 140 countries. The KU Leuven Doctoral Schools train approximately 4,500 PhD students.

 
 
Your Banner Ad Here instead - Showing along with ALL Articles covering Automotive / Trucking / RV Announcements

Replace these Affiliate Programs at ANYTIME! Your banner here within the next hour. Learn How!


 

Written by / Agency / Source: Imec

 
 

Availability: All Regions (Including Int'l)

 

Traffic Booster: [/] Quick NewswireToday Visibility Checker

 

Distribution / Indexing: [+]  / [Company listed above is a registered member of our network. Content made possible by PRZOOM / PRTODAY indexing services]

 
 
# # #
 
 
  Your Banner Ad showing on ALL
Automotive / Trucking / RV articles,
CATCH Visitors via Your Competitors Announcements!


Belgian Security Researchers from KU Leuven and Imec Demonstrate Serious Flaws in Tesla Model X Keyless Entry System

Company website links NOT available to basic submissions
It is OK to republish and/or LINK any newswire for any legitimate media purpose as long as you name NewswireToday and LINK as the source.
 
Publisher Contact: Jade Liu - imec.be 
+32 16 28 16 93 jade.liu[.]imec.be
 
Newswire Today - PRZOOM / PRTODAY disclaims any content contained in this article. If you need/wish to contact the company who published the current release, you will need to contact them - NOT us. Issuers of articles are solely responsible for the accuracy of their content. Our complete disclaimer appears here.
IMPORTANT INFORMATION: Issuance, publication or distribution of this press release in certain jurisdictions could be subject to restrictions. The recipient of this press release is responsible for using this press release and the information herein in accordance with the applicable rules and regulations in the particular jurisdiction. This press release does not constitute an offer or an offering to acquire or subscribe for any Imec securities in any jurisdiction including any other companies listed or named in this release.

Automotive / Trucking / RV via RSSAdd NewswireToday - PRZOOM Headline News to FeedBurner
Find who RetweetFollow @NewswireTODAY

Are you the owner of this article?, Turn it PREMIUM with your LOGO instead - and make it 3rd party Ads-Free! within the next hour!


Read Latest Articles From Imec / Company Profile


Read Automotive / Trucking / RV Most Recent Related Newswires:

Frost & Sullivan Experts Present a Strategic Outlook of the Global Automotive Industry in 2021
Voith Receives A Four-year Service Contract for Automatic Transmissions
Nexans to Deliver AGICITY® EV Charging Stations for Eiffage's Corporate Headquarters
500th Mercedes-Benz Actros SLT with Wear-free Turbo Retarder Clutch from Voith Has Been Delivered
Fully-Featured Intelligent Electric SUV Flagship Hongqi E-HS9 Features Qualcomm C-V2X Solution
BASF Presents Ultradur® RX - Offers More Clarity for Radar Sensors
U.S Electric Vehicles Market Set to Register Nearly Five-fold Growth by 2025 Says Frost & Sullivan
Renovo Lauded by Frost & Sullivan for Edge-centric Automotive Software Platform
iTriangle Lauded by Frost & Sullivan for its End-to-end Automotive Telematics Solutions for a Diverse Range of Customers
Level 1 and 2 Autonomous Truck Sales to Reach 1.1 Million Units by 2040 in North America and Europe Finds Frost & Sullivan
Contactless Delivery of Parts and Services to Trigger a -Billion Market Opportunity in the Global Aftermarket Sector by 2025
PPG Launches Low-VOC Waterborne Coating System for China Refinish Market
BASF Launches New Waterborne Basecoat Line
KRAIBURG TPE Presents An Integrated Compound Portfolio for Automotive Interior Applications
Frost & Sullivan Reveals Global Light Commercial Vehicle Market Outlook for 2020

Boost Your Social Network
& Crowdfunding Campaigns


LIFETIME SOCIAL MEDIA WALL
NewswireToday Celebrates 10 Years in Business


PREMIUM Members


Visit  La Bella Bakery Artisan Bakery Arizona

Visit Calmerry





 
  ©2021 NewswireToday — Limelon Advertising, Co.
Home | About | Advertise/Pricing | Contact | Investors | Privacy/TOS | Sitemap | FRANCAIS
newswire, PR press releases distribution service magazines engine news alert newsroom press room breaking news public relations articles company news alerts newswiredistribution ezine bizentrepreneur biznewstoday digital business report market search pr firms agencies reports distri-bution today investor relation successful internet entrepreneurs newswire distribution prtoday.com newswiredistribution asianewstoday bizwiretoday USA pr UK today - NOT affiliated with PRNewswire as we declined their partnership offer in 2013
 
PRTODAY & NewswireTODAY are proudly NOT affiliated with USA TODAY (usatoday.com)