this post was submitted on 08 Aug 2025
83 points (98.8% liked)

Pulse of Truth

2333 readers
148 users here now

Cyber Security news and links to cyber security stories that could make you go hmmm. The content is exactly as it is consumed through RSS feeds and wont be edited (except for the occasional encoding errors).

This community is automagically fed by an instance of Dittybopper.

founded 2 years ago
MODERATORS
 

A new and custom firmware for the popular Flipper Zero multi-tool device is reportedly capable of bypassing the rolling code security systems used in most modern vehicles, potentially putting millions of cars at risk of theft. Demonstrations by the YouTube channel “Talking Sasquach” reveal that the firmware, said to be circulating on the dark web, […] The post Flipper Zero ‘DarkWeb’ Firmware Bypasses Rolling Code Security on Major Vehicle Brands appeared first on Cyber Security News.

you are viewing a single comment's thread
view the rest of the comments
[–] paraphrand@lemmy.world 4 points 7 months ago* (last edited 7 months ago) (1 children)

Oy. Can someone gently explain to me how this won’t grow into something like the Kia stuff?

[–] Wizard_Pope@lemmy.world 8 points 7 months ago (3 children)

I don't think nearly as many people have flipper zeros as you might believe.

Also wasn't the kia stuff really easy to do and needed like no special tools?

[–] ImplyingImplications@lemmy.ca 10 points 7 months ago (1 children)

Also wasn't the kia stuff really easy to do and needed like no special tools?

KIA/Hyundai removed immobilizers from their US models because US regulations didn't require them so they didn't do it to save money.

Immobilizers check that the ignition was turned by the car's key. Without it, anything that turned the ignition would start the car. The ignition also isn't a keyhole. It's just a rectangular hole. So any object that fit in that hole could start a KIA/Hyundai

[–] Wizard_Pope@lemmy.world 4 points 7 months ago (1 children)

So I was right with it being easy and needing no special tools.

[–] otter@lemmy.dbzer0.com 0 points 7 months ago

Sharing is caring.

[–] Monument 3 points 7 months ago

Not yet…

But if a device you can make or buy lets criminals hang out at a parking garage for stadiums, entertainment venues, or airports, and either rummage through vehicles unimpeded or steal cars while their owners are unaware and pretty much guaranteed to be indisposed for a few hours, then it’s a near certain ROI with pretty low risk for them. (I know, cameras - but - hats, masks during winter, etc.)
And just wait until some unscrupulous vendor mass produces single-click solutions that do this - no display - interface simplified to a few button clicks. No fancy software defined radio. Bare-minimum chip. Then the ROI for criminals is really good.

We’ve seen an uptick in criminals using the CAN-BUS vulnerability to target specific cars. This is way easier and less obvious.

[–] markovs_gun@lemmy.world 1 points 7 months ago (1 children)

Yes. All you needed was something to use as a pry bar to remove the steering column cover and a USB connector to turn there ignition, which most people have in their cars anyway. There are videos on how to do it and it can be done by a teenager in seconds with no special tools. This requires a slight investment which means it probably won't become a fad for troubled teens.

[–] otter@lemmy.dbzer0.com -1 points 7 months ago (1 children)

You seem to be operating under the delusion that car theft is the domain of "troubled teens", gramps. 🤦🏼‍♂️

[–] markovs_gun@lemmy.world -1 points 7 months ago

Well the kia theft in particular was. It was basically a fad among teens in some places to steal kias and go on joyrides in them. The Wikipedia article describes it as a tik tok fad but really it was more localized to specific cities so I would think peer pressure played a big role. Idk how to describe teens who are out there doing shit like this other than "troubled." All the videos I saw looked like they were wannabe gangsters or already in gangs but that wasn't all of them so I didn't know the best way to describe it.