Wireless Auto Repossession System Hacked – Cars Disabled

In Austin Texas, more than 100 customers of a local car dealership suddenly found their cars dead or their horns honking out of control when a vengeful former employee decided to take action using their computerized payment nagging system:

The dealership used a system called Webtech Plus as an alternative to repossessing vehicles that haven’t been paid for. Operated by Cleveland-based Pay Technologies, the system lets car dealers install a small black box under vehicle dashboards that responds to commands issued through a central website, and relayed over a wireless pager network. The dealer can disable a car’s ignition system, or trigger the horn to begin honking, as a reminder that a payment is due.

While there are questions of the ethics and legality of shutting down someone’s car due to failure to pay, the important lesson here is to avoid using wireless and web-based capabilities carelessly. Many such systems are designed without taking into account hacking or insider threat. In this case, customers who had the “black box” in their cars were at risk to both employees of the dealer and Pay Technologies as well as any random hacker who managed to get into either company’s systems.

The simplest and most effective solution is to avoid wireless and web technologies where there is no clear mission goal or benefit. Even then, they must be implemented with strong security measures designed by specialists.

Tags: , ,

Loading...

If you want to learn more about my professional background, click here to learn more.

Check out one of my guides/tutorials:

Citizens Against Government Waste - CAGW
Consumers Against Supermarket Privacy Invasion And Numbering - CASPIAN
The Electronic Frontier Foundation - EFF
The American Civil Liberties Union - ACLU
Public Citizen
The Electronic Privacy Information Center - EPIC

... or check out any of my other guides and tutorials by clicking here!

Citizens Against Government Waste - CAGW

Citizens Against Government Waste - CAGW

[Click for full description]

Consumers Against Supermarket Privacy Invasion and Numbering - CASPIAN

Consumers Against Supermarket Privacy Invasion And Numbering - CASPIAN

[Click for full description]

The Electronic Frontier Foundation (EFF)

The Electronic Frontier Foundation (a.k.a. the EFF) - a nonprofit group of passionate people — lawyers, technologists, volunteers, and visionaries — working to protect your digital rights.

[Click for full description]

The American Civil Liberties Union - ACLU

The American Civil Liberties Union - ACLU

[Click for full description]

Public Citizen

Public Citizen - A group of non-profit lawyers specializing in freedom of speech and other basic American rights.

[Click for full description]

The Electronic Privacy Information Center - EPIC

The Electronic Privacy Information Center - EPIC

[Click for full description]