#AutomotiveSecurity

2025-12-17

Researchers disclosed a critical buffer overflow (CVE-2024-39432) in connected car modems that enables remote code execution and lateral movement across the vehicle SoC.

The findings challenge long-held assumptions about cellular protocol isolation in automotive systems.

Full analysis:
technadu.com/critical-vulnerab

#AutomotiveSecurity #ConnectedCars #RCE #IoTSecurity

Critical Vulnerabilities in Connected Car Modems Expose Critical Vehicle Security Risks, Researchers Say
2025-12-08

INC Ransom claims Yazaki Group breach - 350 GB allegedly stolen, incl. technical drawings for BMW & Nissan.
technadu.com/inc-ransom-claims

The dataset reportedly includes NDAs, HR medical records, financial data, and sensitive engineering documents. If validated, this represents substantial IP and supply-chain exposure across multiple OEMs.

#Cybersecurity #Ransomware #DataBreach #Yazaki #BMW #Nissan #AutomotiveSecurity #SupplyChainSecurity

INC Ransom Claims Attack on Major Automotive Supplier Yazaki Group, Potentially Impacting BMW, Nissan
2025-11-03

Headed to #escar this week?

​Catch Franziskus talking high assurance crypto. And don't miss Karthik's keynote at the "PQC Migration & Supply Chain Readiness" workshop.

Lets connect and talk #verification and #cryptography.

escar.info/escar-europe/

#AutomotiveSecurity #PQC #Crypto #SupplyChain

2025-10-22

Researchers show that lasers can disrupt vehicle microchips — proving that even light can be weaponized in the wrong hands. 🔦🚘 #AutomotiveSecurity #Resilience

darkreading.com/ics-ot-securit

2025-10-21

Did you know that your car is the new BYOD. As vehicles sync with phones and clouds, data privacy and attack surfaces grow on wheels. 🚗📲 #AutomotiveSecurity #ConnectedDevices

darkreading.com/vulnerabilitie

V0lk3n :verified:v0lk3n@infosec.exchange
2025-09-24

Kali Linux 2025.3 is out!

I hope that you will enjoy #NetHunter update, and the news in #CARsenal 😍

I also wish to give all my best wishes to @steevdave who is no longer part of @kalilinux team, i'm sure that your next adventure will be awesome 🥰

kali.org/blog/kali-linux-2025-

#nethunter #kali #kalilinux #linux #carsenal #automotivesecurity #carhacking #pentest #cybersecurity

@arszilla@bird.makeup @arszilla @kalilinux@bird.makeup @kimocoder @steevdave @yesimxev @gamb1t_kali @androidmalware2 @davidbombal

Finite StateFiniteState
2025-09-16

🚨 One week until kicks off in Washington, DC!

With the on the horizon, automakers face growing demands for transparency, SBOM management, & secure-by-design practices. The Finite State team is heading to the summit to help you stay ahead. Book time with us now 👉 info.finitestate.io/auto-isac-

V0lk3n :verified:v0lk3n@infosec.exchange
2025-08-31

Updated preview of #CARsenal for #Kali #Nethunter 2025.3

Few main changes from 2025.2 :
- New MSF Automotive tab
- Rework "About" dialog
- Floatable ICSim display, Play Stop button in menu bar
- Some settings moved into dialog
- More editable buttons

youtube.com/shorts/iNnBt6XmtKU

@davidbombal @androidmalware2 @kalilinux @kalilinux@bird.makeup @kimocoder @yesimxev @steevdave @gamb1t_kali @offsec

#KaliLinux #Automotive #AutomotiveSecurity #CarHacking #CyberSecurity #Nethunter #KaliNethunter

2025-07-13

Security researchers reveal Bluetooth vulnerabilities affecting vehicles from multiple vendors

Vulnerabilities: Use-after-free; improper validation; incorrect function termination, function call with incorrect parameter

Impact: Can potentially allow access to the car's internals through the infotainment system

Vulnerability IDs: CVE-2024-45431 to CVE-2024-45434

Remediation:
- Patches were released last year on the underlying SDK
- Vendors using the SDK need to apply the patches

#cybersecurity #automotivesecurity #Bluetooth

bleepingcomputer.com/news/secu

Pen Test PartnersPTP@infosec.exchange
2025-06-26

We turned a car into a Mario Kart controller! 🏎️🎮
 
At PTP Cyber Fest, attendees used the steering wheel, pedals, and brakes of a real Renault Clio to play SuperTuxKart.
 
We tapped into the CAN bus with cheap wire splicers.
 
Mapped the signals using Python.
 
We even wrote our own state machine to make it all work.
 
Sure, it was a bit impractical. We had to remove the wing mirrors to fit it inside the building, deal with dodgy electrics, and babysit the car battery.
 
Next year, we might try something a bit more portable.
 
📌Read how we did it here: pentestpartners.com/security-b
 
#CyberSecurity #AutomotiveSecurity #CANbus #HackThePlanet #PenTesting #Python #Infosec #PTPCyberFest2025

Finite StateFiniteState
2025-05-20

Day 1 at 2025 is here!

If you’re navigating automotive cybersecurity challenges, come see how we’re enabling secure-by-design practices for connected vehicles.
📍 info.finitestate.io/escar-usa-

Finite StateFiniteState
2025-05-16

We're less than 1 WEEK out from 2025!

📍Stop by to learn how we help automotive manufacturers meet evolving regulatory demands & secure embedded systems across the SDLC.

🔗 info.finitestate.io/escar-usa-

Security Landsecurityland
2025-04-16

Researchers demonstrate how hackers could remotely control 2020 Nissan Leaf vehicles, access location data, and even record in-car conversations through critical security flaws. See the demonstration and learn what Nissan is doing to address these serious vulnerabilities.

security.land/critical-securit

Global Quality Services (GQS)gqssingapore
2025-03-24
Global Quality Services (GQS)gqssingapore
2025-03-21

Client Info

Server: https://mastodon.social
Version: 2025.07
Repository: https://github.com/cyevgeniy/lmst