Workflow
汽车网络安全
icon
Search documents
一场看不见的汽车战争
汽车商业评论· 2025-12-15 23:06
Core Viewpoint - The automotive industry is facing a significant shift towards software-related issues, with software defects now accounting for a substantial portion of vehicle recalls, indicating a systemic risk that must be addressed through enhanced cybersecurity measures and a holistic approach to safety [7][15][19]. Group 1: Software-Related Recalls - In 2024, the total number of vehicles recalled globally due to software issues is projected to reach 13.4 million, which is over four times the number from 2023, representing 46% of all recalls [7][15]. - The ratio of recalls due to software defects is now nearly equal to that of traditional mechanical design defects, highlighting the growing importance of software safety in the automotive sector [7][15]. Group 2: Cybersecurity and Systemic Risks - The transition towards "new four modernizations" in the automotive industry, including electrification and connectivity, has expanded the attack surface for vehicles, necessitating urgent exploration of cybersecurity measures [7][9]. - Experts emphasize the need for a comprehensive, system-wide approach to automotive cybersecurity, integrating security from the ground up in the development process rather than as an afterthought [10][12]. Group 3: AI and Future Challenges - AI is seen as both an enabler and a potential source of unforeseen challenges in automotive cybersecurity, with the rapid evolution of AI technologies posing risks that are not yet fully understood [18][19]. - The integration of AI into automotive systems requires a reevaluation of existing security frameworks, as traditional methods may not adequately address the complexities introduced by AI [54][56]. Group 4: OTA Security Measures - Companies are implementing various strategies to ensure the security of Over-The-Air (OTA) updates, including dual backup systems and real-time user feedback during the update process [40][44]. - The balance between user experience and safety is critical, with companies prioritizing safety over convenience when necessary [41][44]. Group 5: Collaboration and Testing - Collaboration with third-party security firms for testing and validation is common, as companies recognize the need for external expertise in identifying vulnerabilities [50][51]. - Continuous testing and updates are essential for maintaining security throughout the vehicle's lifecycle, akin to regular health check-ups for humans [55].
挖过特斯拉漏洞的黑客,来堵汽车的窟窿
汽车商业评论· 2025-12-10 23:07
加入轩辕同学 , 成就新汽车人! 作 者 | 李 均 ( 犬安 科 技 C E O ) 编 辑 | 郝雨 涵 设 计 甄 尤 美 设 计 | 甄 尤 美 2023年Pwn2Own黑客大赛上,法国团队Synacktiv亮出硬核操作——凭借 TOCTTOU攻击技术,仅耗时2分钟就远程攻破特斯拉Model 3的网关系统 与信息娱乐子系统,一举拿下35万美元奖金和一辆Model 3新车。 这绝非赛场噱头,而是智能汽车网络安全风险的真实切片。 早在 2015年,菲亚特克莱斯勒美国公司曾宣布召回约140万辆存在软件漏洞的汽车,原因是两名黑客在车辆行驶过程中,从10英里之外用计算机 侵入名为Uconnect的触屏车载无线电系统,对车辆的方向盘、油门、刹车以及空调、收音机、雨刷等功能加以操控。 这类威胁并不是外资品牌的 "专属难题",自主品牌同样难逃一劫。 此前,蔚来汽车就曾遭遇勒索攻击,攻击者窃取核心数据后,公然索要价值 225万美元的比特币,气焰嚣张。 正是在这样的行业背景下,探析汽车网络安全攻防的技术演进与治理路径,成为筑牢产业安全防线、推动智能汽车高质量发展的必答题。 2025年12月6日下午,WNAT-CES 20 ...
冒充极氪团队“学习”,这家车企真这么荒唐?
汽车商业评论· 2025-10-12 23:08
Core Viewpoint - The article discusses an incident where BYD's security team allegedly impersonated Geely's Zeekr team to obtain sensitive information about a cybersecurity product, raising questions about corporate ethics and competition in the automotive industry [4][5][11]. Group 1: Incident Overview - BYD's security team posed as members of Geely's Zeekr team to request information about DefenseWeaver, an AI-driven automotive cybersecurity analysis software [4]. - The impersonators initiated contact through official channels, conducted a detailed online meeting, and subsequently went silent after obtaining information [4][5]. - After the incident, BYD representatives provided vague explanations and did not acknowledge any wrongdoing [4]. Group 2: Industry Context - The incident reflects a competitive environment in the Chinese automotive sector, where companies may resort to unethical practices to gain technological advantages [11][12]. - BYD reported significant financial growth, with a revenue of 777.1 billion yuan and a net profit of 40.25 billion yuan in 2024, suggesting that the company has resources for legitimate R&D [11]. - The competitive landscape has intensified, with Geely's sales increasing by 126% in the first half of 2025, indicating a shrinking market share for BYD [14]. Group 3: Ethical Concerns - The article raises critical questions about BYD's corporate culture and the ethical standards expected of its employees [17]. - Comments from industry insiders suggest that such behavior may stem from internal pressures to innovate and compete effectively [11][12]. - The incident has sparked discussions about the need for suppliers to protect their intellectual property in a highly competitive market [12][17].
路畅科技:获得ISO/SAE 21434网络安全体系认证证书
人民财讯8月6日电,据路畅科技(002813)消息,8月6日,路畅科技通过DEKRA德凯审核,获得国际 权威的ISO/SAE21434汽车网络安全体系认证证书。 ...