• New Cars
    • First Impressions
    • Road Tests
  • Classics
    • Classic Profiles
    • Classic Driving Impressions
    • Classics Information
    • Events and Days Out
  • Motoring For Fun
  • News & Views
  • Bookshelf
  • Technical
    • Grumpy Old Mechanic
    • Kim’s Tips
  • Features
    • Visits
    • Track Days
  • Contributors
    • About our contributors
    • Kim Henson
    • Chris Adamson
    • Kieron Fennelly
    • Ant Henson
    • Rachel Henson
    • David Miles
    • Gerald Morgan
    • Dave Moss
    • Dave Randle
    • Robin Roberts
    • Tom Scanlan
    • Glen Smale
    • Jeremy Walton
    • Keith Ward
    • John Price Williams
  • More…
    • About Wheels Alive
    • Tips for using this website
    • Useful Links

Wheels Alive

Old cars, new cars, borrowed cars & blue cars. If it steers it's here!

Old cars, new cars, borrowed cars & blue cars. If it steers it's here!

Privacy & Cookies: This site uses cookies. By continuing to use this website, you agree to their use.
To find out more, including how to control cookies, see here: Cookie Policy

News – A security flaw on many or most recent cars can take out safety (and other) systems… Is this really progress?

Author/Source: Kim Henson

17th August 2017

The internet/world-wide web is a wonderful means of communicating, but now that many modern cars are linked to it, the potential for attacking and disabling vehicle computer systems is very real…

Yesterday, researchers discovered a security flaw that could potentially (and probably does) affect all new vehicles. It allows an attacker to turn off safety features, such as airbags, ABS brakes, and power-steering – or any of a vehicle’s computerised components connected to its controller area network or CAN bus.

Commenting on this, Art Dahnert, managing consultant at Synopsys, said “The problem identified by Trend Micro is related to the design and architecture of the CAN bus found in nearly all new cars today. The development of the technology goes back to the 1980’s, predating the World Wide Web. No one at that time thought that someone would deliberately try to sabotage a vehicle over the in-car network.

The attack involves creating a Denial of Service for a specific target by using the error management built into the CAN bus protocol. When an attacker causes the network to send too many error ‘messages’ (frames) to a device, the design dictates that the target goes into a Bus Off state. This means that it will no longer respond to messages or send new ones, effectively disabling the device. In the case of an automobile it might be the ABS or airbags or even the electrically-assisted power steering.

Generally, these types of attacks will require access to the vehicle and the ability to persist beyond a restart. However, now that newer vehicles can be connected to the internet in a myriad of ways this is no longer true. Taking advantage of connected phones and telematics features, an attack could happen without direct physical access. And this isn’t necessarily isolated to a single manufacture or model of vehicle.

Even though the problem has been identified, resolving it will be a long time coming. There are many factors involved, including the large number of vehicle and component manufacturers as well as the technical difficulties in developing a solution for this type of problem. Not to mention the requirements to allow access by the aftermarket and third party repair establishments.”

He adds, “You can’t bolt on security, it has to be built in from the beginning. A simple update will not fix the cars on the road today.”

 

Save Post as PDF

Categories: Kim Henson, News & Views

Tip: For improved search accuracy, enclose search terms for multiple words in quotation marks. For example:
"Land Rover".

Advertise with us

Recent Posts

McLaren M23 joins Icons of F1 display at Beaulieu

British Motor Museum will host the ‘Great British Model Railway Show’ on 25th/26th October 2025

Leapmotor gains accreditation to The Motor Ombudsman’s New Car Code

Preview rally at John O’Groats at the weekend in advance of the UK start of the Monte Historique/Classique Rally in January 2026

Lexus LM 350h Standard 2WD – Road Test

British Motor Museum shortlisted for the 2026 West Midlands Tourism Awards

1,000 Mile Trial Survivor Honoured in Special Commemorative Artwork

Skywell UK gains accreditation to The Motor Ombudsman’s New Car Code

Contributors

contributors

Our well-respected contributors live and breathe motor cars; aren’t we lucky?

Contributors to the site include talented, highly-respected people (so they tell me) on the hallowed membership list of the Guild of Motoring Writers, and from the similarly well thought-of Western Group of Motoring Writers. In addition there are valued contributions from other knowledgeable and capable motoring writers who have something useful to say about all aspects of driving and running vehicles in the 21st Century. All of our team are passionate about motor cars!


Read about our contributors  ››

Tags

large SUV plug-in hybrid crossover National Motor Museum Electric 4x4 Coupé estate Suzuki Estate car MPV saloon First Impressions British Motor Museum City car The Motor Ombudsman Hybrid PHEV Compact SUV EV Kia Tyres Beaulieu SUV all-electric road test five door hatchback Seven seater SUV luxury SUV hatchback

All Tags ››

Like us on Facebook

Like us on Facebook

Wheels Alive Social

  • E-mail
  • Facebook
  • RSS
  • Twitter

Please share our website

Contact us

We welcome your questions, comments and feedback. Please click here to contact us.

Advertising Opportunities

Please contact us if you would like to discuss advertising opportunities on Wheels Alive.

Copyright © 2025 Kim Henson, Wheels Alive