

Firmware
Tesla rolls out Key Fob security update for Model S to address risks of cloning
As part of continuing efforts to ensure their vehicles are the safest cars on the road, Tesla’s “Bug Bounty” program gives awards to security researchers that uncover vulnerabilities in the company’s various product systems. Perhaps one of the most impressive parts of that program, however, is Tesla’s ability to remedy the flaws quickly. In the most recent example of their dedication to security, a Bug Bounty find from April this year is now being patched via an over-the-air (OTA) update in 2019.32.
Last year, a Tesla Model S key fob was hacked by a team led by Lennert Wouters of Katholieke Universiteit Leuven in Belgium (KU Leuven). The security flaw enabled would-be car thieves to clone a fob in less than two seconds, after which the vehicle could be driven off. Tesla subsequently offered a multi-part fix: PIN to Drive, a software update, and a new fob. Wouters again found a very similar flaw in the new fob, but this time the fix only required an OTA update which patched both the vehicle software and the fob’s configuration via radio waves.
The key fob flaw is based on cracking an encryption method that originally used a 40-bit configuration. When Tesla fixed the last flaw, the encryption was changed to a more secure 80-bit configuration, but that only separated the hacking problem into two parts – cracking two 40-bit keys. “The new key fob is better than the first one, but with twice the resources, we could still make a copy, basically,” Wouters said in a presentation at the Cryptographic Hardware and Embedded Systems conference in Atlanta this week. The new hack also required very close proximity to the fob and double the time to break the encryption (four seconds vs. two).
Wouters and his team at KU Leuven were able to prove their theory to Tesla about the secondary flaw and were awarded a Bug Bounty in April for the find. Notably, only the Model S is affected by the key fob issue as it’s the only Tesla vehicle key using a specific Pektron-manufactured technology. Tesla is rolling out their OTA fix now.
“We’ve begun to release an over-the-air software update (part of 2019.32) that addresses this researcher’s findings and allows certain Model S owners to update their key fobs inside their car in less than two minutes. We believe that neither of these options would be possible for any other automaker to release to existing owners, given our unique ability to roll out over-the-air updates that improve the functionality and security of our cars and key fobs,” Tesla said in a statement to Wired.

Tesla’s bug bounty program started back in 2015, though the company initially invited hackers to find vulnerabilities in its website only. During that time, no vehicles were open for hacking, and the rewards offered for security researchers were around $25 to $1,000. Tesla eventually increased the scope of its bug bounty program to its vehicles, and the prizes now range from $100 to $15,000.
The Bug Bounty program isn’t Tesla’s only security challenge that hands out prizes to researchers for finding flaws. This year, in particular, the auto maker participated in Pwn2Own, a contest which began in 2007 and is held at the CanSec West security conference. Participants are challenged to exploit widely-used software and mobile devices for vulnerabilities; winners of the contest traditionally receive the device that they exploited, a cash prize, and some exclusive merchandise. For hackers able to beat Tesla’s security, a Mid Range RWD Model 3 was up for grabs. Amat Cama and Richard Zhu of team Fluoroacetate won the vehicle plus $35,000 for displaying a message on the car’s web browser via a just-in-time (JIT) bug in the renderer component.
Wouters’ full presentation from a COSIC seminar on how his team’s most recent Model S fob hack was achieved can be viewed in the video below:

Firmware
Tesla mobile app shows signs of upcoming FSD subscriptions

It appears that Tesla may be preparing to roll out some subscription-based services soon. Based on the observations of a Wales-based Model 3 owner who performed some reverse-engineering on the Tesla mobile app, it seems that the electric car maker has added a new “Subscribe” option beside the “Buy” option within the “Upgrades” tab, at least behind the scenes.
A screenshot of the new option was posted in the r/TeslaMotors subreddit, and while the Tesla owner in question, u/Callump01, admitted that the screenshot looks like something that could be easily fabricated, he did submit proof of his reverse-engineering to the community’s moderators. The moderators of the r/TeslaMotors subreddit confirmed the legitimacy of the Model 3 owner’s work, further suggesting that subscription options may indeed be coming to Tesla owners soon.
Did some reverse engineering on the app and Tesla looks to be preparing for subscriptions? from r/teslamotors
Tesla’s Full Self-Driving suite has been heavily speculated to be offered as a subscription option, similar to the company’s Premium Connectivity feature. And back in April, noted Tesla hacker @greentheonly stated that the company’s vehicles already had the source codes for a pay-as-you-go subscription model. The Tesla hacker suggested then that Tesla would likely release such a feature by the end of the year — something that Elon Musk also suggested in the first-quarter earnings call. “I think we will offer Full Self-Driving as a subscription service, but it will be probably towards the end of this year,” Musk stated.
While the signs for an upcoming FSD subscription option seem to be getting more and more prominent as the year approaches its final quarter, the details for such a feature are still quite slim. Pricing for FSD subscriptions, for example, have not been teased by Elon Musk yet, though he has stated on Twitter that purchasing the suite upfront would be more worth it in the long term. References to the feature in the vehicles’ source code, and now in the Tesla mobile app, also listed no references to pricing.
The idea of FSD subscriptions could prove quite popular among electric car owners, especially since it would allow budget-conscious customers to make the most out of the company’s driver-assist and self-driving systems without committing to the features’ full price. The current price of the Full Self-Driving suite is no joke, after all, being listed at $8,000 on top of a vehicle’s cost. By offering subscriptions to features like Navigate on Autopilot with automatic lane changes, owners could gain access to advanced functions only as they are needed.
Elon Musk, for his part, has explained that ultimately, he still believes that purchasing the Full Self-Driving suite outright provides the most value to customers, as it is an investment that would pay off in the future. “I should say, it will still make sense to buy FSD as an option as in our view, buying FSD is an investment in the future. And we are confident that it is an investment that will pay off to the consumer – to the benefit of the consumer.” Musk said.
Firmware
Tesla rolls out speed limit sign recognition and green traffic light alert in new update

Tesla has started rolling out update 2020.36 this weekend, introducing a couple of notable new features for its vehicles. While there are only a few handful of vehicles that have reportedly received the update so far, 2020.36 makes it evident that the electric car maker has made some strides in its efforts to refine its driver-assist systems for inner-city driving.
Tesla is currently hard at work developing key features for its Full Self-Driving suite, which should allow vehicles to navigate through inner-city streets without driver input. Tesla’s FSD suite is still a work in progress, though the company has released the initial iterations of key features such Traffic Light and Stop Sign Control, which was introduced last April. Similar to the first release of Navigate on Autopilot, however, the capabilities of Traffic Light and Stop Sign Control were pretty basic during their initial rollout.
2020.36 Showing Speed Limit Signs in Visualization from r/teslamotors
With the release of update 2020.36, Tesla has rolled out some improvements that should allow its vehicles to handle traffic lights better. What’s more, the update also includes a particularly useful feature that enables better recognition of speed limit signs, which should make Autopilot’s speed adjustments better during use. Following are the Release Notes for these two new features.
Green Traffic Light Chime
“A chime will play when the traffic light you are waiting for turns green. If you are waiting behind another car, the chime will play once the car advances unless Traffic-Aware Cruise Control or Autosteer is active. When Traffic Light and Stop Sign Control is activated, a chime will play when you can confirm to proceed through a green traffic light. To enable, tap Controls > Autopilot > Green Traffic Light Chime.
“Note: This chime is only designed as a notification. It is the driver’s responsibility to observe their environment and make decisions accordingly.”
Speed Assist Improvements
“Speed Assist now leverages your car’s cameras to detect speed limit signs to improve the accuracy of speed limit data on local roads. Detected speed limit signs will be displayed in the driving visualization and used to set the associated Speed Limit Warning.
“As usual, to adjust Speed Assist settings, tap Controls > Autopilot > Speed Limit.”
Footage of the new green light chime in action via @NASA8500 on Twitter ✈️ from r/teslamotors
Amidst the rollout of 2020.36’s new features, speculations were abounding among Tesla community members that this update may include the first pieces of the company’s highly-anticipated Autopilot rewrite. Inasmuch as the idea is exciting, however, Tesla CEO Elon Musk has stated that this was not the case. While responding to a Tesla owner who asked if the Autopilot rewrite is in “shadow mode” in 2020.36, Musk responded “Not yet.”
Firmware
Tesla rolls out Sirius XM free three-month subscription

Tesla has rolled out a free three-month trial subscription to Sirius XM, in what appears to be the company’s latest push into making its vehicles’ entertainment systems more feature-rich. The new Sirius XM offer will likely be appreciated by owners of the company’s vehicles, especially considering that the service is among the most popular satellite radios in the country today.
Tesla announced its new offer in an email sent on Monday. An image that accompanied the communication also teased Tesla’s updated and optimized Sirius XM UI for its vehicles. Following is the email’s text.
“Beginning now, enjoy a free, All Access three-month trial subscription to Sirius XM, plus a completely new look and improved functionality. Our latest over-the-air software update includes significant improvements to overall Sirius XM navigation, organization, and search features, including access to more than 150 satellite channels.
“To access simply tap the Sirius XM app from the ‘Music’ section of your in-car center touchscreen—or enjoy your subscription online, on your phone, or at home on connected devices. If you can’t hear SiriusXM channels in your car, select the Sirius XM ‘Subscription’ tab for instruction on how to refresh your audio.”
Tesla has actually been working on Sirius XM improvements for some time now. Back in June, for example, Tesla rolled out its 2020.24.6.4 update, and it included some optimizations to its Model S and Model X’s Sirius XM interface. As noted by noted Tesla owner and hacker @greentheonly, the source code of this update revealed that the Sirius XM optimizations were also intended to be released to other areas such as Canada.
Interestingly enough, Sirius XM is a popular feature that has been exclusive to the Model S and X. Tesla’s most popular vehicle to date, the Model 3, is yet to receive the feature. One could only hope that Sirius XM integration to the Model 3 may eventually be included in the future. Such an update would most definitely be appreciated by the EV community, especially since some Model 3 owners have resorted to using their smartphones or third-party solutions to gain access to the satellite radio service.
The fact that Tesla seems to be pushing Sirius XM rather assertively to its customers seems to suggest that the company may be poised to roll out more entertainment-based apps in the coming months. Apps such as Sirius XM, Spotify, Netflix, and YouTube, may seem quite minor when compared to key functions like Autopilot, after all, but they do help round out the ownership experience of Tesla owners. In a way, Sirius XM does make sense for Tesla’s next-generation of vehicles, especially the Cybertruck and the Semi, both of which would likely be driven in areas that lack LTE connectivity.
-
Elon Musk1 week ago
Elon Musk roasts owners of this car brand after another Tesla vandalism incident
-
Elon Musk4 days ago
Elon Musk confirms two measures Tesla is taking to fight vandalism
-
Elon Musk2 weeks ago
President Donald Trump buys a Tesla at the White House – Here’s which model he chose
-
News1 week ago
U.S. AG Pam Bondi: Tesla Molotov attack suspect facing up to 20 years in prison
-
News1 week ago
SpaceX rescue mission for stranded ISS astronauts nears end — Here’s when they’ll return home
-
News2 weeks ago
Rivian supports Tesla despite all the Elon Musk hate
-
News3 days ago
Tesla aiming to produce first “legion” of Optimus robots this 2025
-
News1 week ago
Tesla reveals Cybercab battery pack and range efficiency