Connect with us

News

Details Behind the Tesla Model S Hack

Two researchers broke into the software of a Tesla recently. But there is good news behind the Tesla Model S hack. A fix was sent to all cars within days.

Published

on

Tesla Model S hack

Tesla Model S infotainment system also serves as the command center to the vehicle.

Last week, Marc Rogers, of content delivery network CloudFlare, and Lookout Mobile Security co-founder Kevin Mahaffey completed a digital break-in of a Tesla. But here’s the good news behind the Tesla Model S hack. Tesla quickly released an over-the-air firmware update, to every Model S ever manufactured, that would resolve the security holes uncovered by Rogers and Mahaffey.

The Tesla Hack

Rogers and Mahaffey had to dismantle the dashboard to gain access to an ethernet port. From there, they were able to connect directly to the CAN bus, the controller area network across which car data is sent and received.

After that, they chained together four separate vulnerabilities, first to gain access to the infotainment systems and then the touchscreen used to control vehicle functions. That let them make the speedometer disappear, alter the suspension, unlock the doors and the trunk, and make the windows go up and down. They were also able to shut down the car’s electric motor below 5 mph.

Above that speed, the dashboard screens would go blank but the car would shift into neutral, giving the driver time to find a safe place to bring the car to a stop. “Ironically, that means it’s the only car that can protect itself against a successful cyber attack,” Rogers noted.

Tesla’s Response

“Tesla has taken a number of different measures to address the effects of all six vulnerabilities reported by Lookout. And, we continue to develop further ways to harden our systems, informed by ongoing discussions with the security research community, as well as our own internal analysis. The update has been made available to all Model S customers through an OTA update. We will deploy this update to all vehicles by Thursday,” a spokesperson said in a statement e-mailed to Forbes.

Other auto manufacturers are following in Tesla’s footsteps by making internet updates available for their upcoming line of vehicles, but are starting years behind Tesla.

Advertisement
-->

Rogers and Mahaffey say they also found two potential browser vulnerabilities that they exposed but did not exploit. Those flaws, resident in the WebKit browser engine, could possibly have enabled remote attacks, but Tesla’s new firmware update has resolved those issues as well.

Tesla CTO Toasts Hackers

While Rogers and Mahaffey were explaining their hacks at Def Con 23 last Friday, Tesla CTO J. B. Straubel made a surprise appearance to offer them a toast and personally thank them for their work. J.B. presented the duo with “Challenge Coins,” which will Tesla will be giving to any researcher who finds a serious security hole in their vehicles.

-->

Tesla's approach to distribute vulnerability and feature updates through over-the-air technology, similar to how one updates software on their mobile device, clearly puts it steps ahead of other automakers.

Chris Evans, who previously worked on Google’s elite Project Zero research team, became head of digital security at Tesla this past week. He was involved in the software update that the company has now sent to all customers. “This gives me really high hopes with Tesla going forward," says Mahaffey. “I would like to see what they’ve done as a reference model for others. I think they’ve got lessons to learn but they’re 75 per cent there."

As cars acquire more digital capability, the opportunities for outside interference either by "white hat" hackers or those bent on doing actual harm will increase. Tesla, though, has the most robust program for identifying and resolving digital security issues of any manufacturer. That commitment should give every Tesla owner and prospective owner a full measure of confidence in the integrity of Tesla automobiles, now and in the future.

"I write about technology and the coming zero emissions revolution."

Advertisement
Comments

News

Tesla Robotaxi Safety Monitor seems to doze off during Bay Area ride

We won’t try to blame the camera person for the incident, because it clearly is not their fault. But it seems somewhat interesting that they did not try to wake the driver up and potentially contact Tesla immediately to alert them of the situation.

Published

on

Credit: u/ohmichael on Reddit

A Tesla Robotaxi Safety Monitor appeared to doze off during a ride in the California Bay Area, almost ironically proving the need for autonomous vehicles.

The instance was captured on camera and posted to Reddit in the r/sanfrancisco subreddit by u/ohmichael. They wrote that they have used Tesla’s ride-hailing service in the Bay Area in the past and had pleasant experiences.

However, this one was slightly different. They wrote:

“I took a Tesla Robotaxi in SF just over a week ago. I have used the service a few times before and it has always been great. I actually felt safer than in a regular rideshare.

This time was different. The safety driver literally fell asleep at least three times during the ride. Each time the car’s pay attention safety alert went off and the beeping is what woke him back up.

Advertisement
-->

I reported it through the app to the Robotaxi support team and told them I had videos, but I never got a response.

I held off on posting anything because I wanted to give Tesla a chance to respond privately. It has been more than a week now and this feels like a serious issue for other riders too.

Has anyone else seen this happen?”

My Tesla Robotaxi “safety” driver fell asleep
byu/ohmichael insanfrancisco

The driver eventually woke up after prompts from the vehicle, but it is pretty alarming to see someone like this while they’re ultimately responsible for what happens with the ride.

Advertisement
-->

We won’t try to blame the camera person for the incident, because it clearly is not their fault. But it seems somewhat interesting that they did not try to wake the driver up and potentially contact Tesla immediately to alert them of the situation.

They should have probably left the vehicle immediately.

Tesla’s ride-hailing service in the Bay Area differs from the one that is currently active in Austin, Texas, due to local regulations. In Austin, there is no Safety Monitor in the driver’s seat unless the route requires the highway.

Tesla plans to remove the Safety Monitors in Austin by the end of the year.

Advertisement
-->
Continue Reading

News

Tesla opens Robotaxi access to everyone — but there’s one catch

Published

on

Credit: Tesla

Tesla has officially opened Robotaxi access to everyone and everyone, but there is one catch: you have to have an iPhone.

Tesla’s Robotaxi service in Austin and its ride-hailing service in the Bay Area were both officially launched to the public today, giving anyone using the iOS platform the ability to simply download the app and utilize it for a ride in either of those locations.

It has been in operation for several months: it launched in Austin in late June and in the Bay Area about a month later. In Austin, there is nobody in the driver’s seat unless the route takes you on the freeway.

In the Bay Area, there is someone in the driver’s seat at all times.

The platform was initially launched to those who were specifically invited to Austin to try it out.

Advertisement
-->

Tesla confirms Robotaxi is heading to five new cities in the U.S.

Slowly, Tesla launched the platform to more people, hoping to expand the number of rides and get more valuable data on its performance in both regions to help local regulatory agencies relax some of the constraints that were placed on it.

Additionally, Tesla had its own in-house restrictions, like the presence of Safety Monitors in the vehicles. However, CEO Elon Musk has maintained that these monitors were present for safety reasons specifically, but revealed the plan was to remove them by the end of the year.

Now, Tesla is opening up Robotaxi to anyone who wants to try it, as many people reported today that they were able to access the app and immediately fetch a ride if they were in the area.

We also confirmed it ourselves, as it was shown that we could grab a ride in the Bay Area if we wanted to:

Advertisement
-->

The launch of a more public Robotaxi network that allows anyone to access it seems to be a serious move of confidence by Tesla, as it is no longer confining the service to influencers who are handpicked by the company.

In the coming weeks, we expect Tesla to then rid these vehicles of the Safety Monitors as Musk predicted. If it can come through on that by the end of the year, the six-month period where Tesla went from launching Robotaxi to enabling driverless rides is incredibly impressive.

Advertisement
-->

Continue Reading

News

Tesla analyst sees Full Self-Driving adoption rates skyrocketing: here’s why

“You’ll see increased adoption as people are exposed to it. I’ve been behind the wheel of several of these and the different iterations of FSD, and it is getting better and better. It’s something when people experience it, they will be much more comfortable utilizing FSD and paying for it.”

Published

on

tesla interior operating on full self driving
Credit: TESLARATI

Tesla analyst Stephen Gengaro of Stifel sees Full Self-Driving adoption rates skyrocketing, and he believes more and more people will commit to paying for the full suite or the subscription service after they try it.

Full Self-Driving is Tesla’s Level 2 advanced driver assistance suite (ADAS), and is one of the most robust on the market. Over time, the suite gets better as the company accumulates data from every mile driven by its fleet of vehicles, which has swelled to over five million cars sold.

The suite features a variety of advanced driving techniques that many others cannot do. It is not your typical Traffic-Aware Cruise Control (TACC) and Lane Keeping ADAS system. Instead, it can handle nearly every possible driving scenario out there.

It still requires the driver to pay attention and ultimately assume responsibility for the vehicle, but their hands are not required to be on the steering wheel.

It is overwhelmingly impressive, and as a personal user of the FSD suite on a daily basis, I have my complaints, but overall, there are very few things it does incorrectly.

Advertisement
-->

Tesla Full Self-Driving (Supervised) v14.1.7 real-world drive and review

Gengaro, who increased his Tesla price target to $508 yesterday, said in an interview with CNBC that adoption rates of FSD will increase over the coming years as more people try it for themselves.

At first, it is tough to feel comfortable with your car literally driving you around. Then, it becomes second nature.

Gengaro said:

“You’ll see increased adoption as people are exposed to it. I’ve been behind the wheel of several of these and the different iterations of FSD, and it is getting better and better. It’s something when people experience it, they will be much more comfortable utilizing FSD and paying for it.”

Advertisement
-->

Tesla Full Self-Driving take rates also have to increase as part of CEO Elon Musk’s recently approved compensation package, as one tranche requires ten million active subscriptions in order to win that portion of the package.

The company also said in the Q3 2025 Earnings Call in October that only 12 percent of the current ownership fleet are paid customers of Full Self-Driving, something the company wants to increase considerably moving forward.

Continue Reading