Millions of cars vulnerable to hacking via hidden dealer-installed alarms
A security flaw in a device installed by car dealerships across the United States has left millions of vehicles vulnerable to remote hacking, researchers have warned. The device, an aftermarket alarm system, can be exploited to unlock doors, track locations, and even disable engines, posing a serious risk to drivers.
The affected devices were installed by dealerships in millions of vehicles, often without the buyer's knowledge or consent, and were left in place even when customers declined the alarm service. This means a vast number of cars on the road today carry a hidden vulnerability that could be exploited by malicious actors.
Researchers from a cybersecurity firm discovered the flaw and reported that it allows attackers to remotely access the device via a cellular network, bypassing security measures. The implications are significant: hackers could not only steal vehicles but also stalk drivers by tracking their movements or immobilize cars in dangerous situations.
The vulnerability affects a specific model of alarm system, which was installed in vehicles across the country over several years. The researchers have not disclosed the exact number of affected cars, but they estimate it could be in the millions. They have notified the manufacturer, which has released a patch to fix the flaw.
Dealerships are now being urged to apply the patch to all vehicles that still have the device installed. Owners are advised to contact their dealership to ensure the update is performed. The researchers emphasized that the fix is critical, as the flaw could be exploited remotely without any physical access to the vehicle.
This discovery highlights broader concerns about the security of connected car systems. As vehicles become more reliant on software and internet connectivity, the potential for remote attacks grows. The researchers recommend that automakers and dealers prioritize cybersecurity in aftermarket installations to prevent similar vulnerabilities in the future.
Sources
- WiredSecondary
- Google News TechnologySecondary
- Google News TechnologySecondary
Related
Microsoft unveils AI security tools it says outperform competing platforms
Private Claude chats exposed in Google and Bing search results
Apple sued after alleged App Store crypto scam cost users $1.8M
Microsoft unveils cybersecurity AI tools
Claude AI shared chats indexed by Google before removal
Hugging Face CEO urges transparency after 'unprecedented' OpenAI hack
ClickLock Mac malware locks apps until users pay up
Hacker who breached spyware makers remains unidentified
Trending now
- Film-maker Chuck Russell, director of The Mask, dies at 74
- Apple's First Water-Resistant iPad to Launch Later This Year
- Marvel announces Ryan Gosling as Ghost Rider and new Black Panther at Comic-Con
- Water supply failure leaves Gatwick without working toilets
- Apple set to launch three smart home products with Siri AI
- Snake robots used to search for Venezuela earthquake survivors
- US 30-Year Yield Stays Above 5% for Longest Stretch Since 2007
- Avengers: Doomsday trailer debuts at Comic-Con, Doctor Doom leads Sentinels against heroes
Comments
No comments yet. Be the first.