Connect with us

News

Tesla Will Pay Hackers To Help Improve Security

Tesla has announced a program of cash awards for hackers who expose security risks they find at on the company website and provide ways to fix them.

Published

on

After Tesla’s Twitter account got hacked in April, they have become more serious about security for its website. Tesla is using Bugcrowd, a place where “white hat” hackers congregate, to solicit assistance in identifying security risks on the company website. Cash rewards from $25 to $1,000 are offered.

The official announcement at Bugsource reads as follows:

“Tesla values the work done by security researchers in improving the security of our products and service offerings. We are committed to working with this community to verify, reproduce, and respond to legitimate reported vulnerabilities. We encourage the community to participate in our responsible reporting process.”

Rather than posting at Bugsource, Tesla asks people to e-mail it directly to vulnerability@teslamotors.com.

Advertisement

For its part, Bugsource has created a Hall of Fame for those who respond to the Tesla offer. It says 22 submissions have been made so far. You can see what awards have been made once you sign up to become a Bugsource member.

The rather large elephant in the room, however, is not security for the company website. It is security for the cars the company makes, every one of which leaves the factory with internet connectivity built in. The individuals who hacked the Tesla Twitter account were mere pranksters, but people with actual malicious intent could create havoc if they are able to hack into the cars themselves.

At a time when self-driving features are being touted by many car makers, especially Tesla with its highly advanced suite of AutoPilot features, the need to guarantee the security of onboard computers and software is critical. As cars add more “drive by wire” systems that control steering and braking, the possibility of serious physical harm increases exponentially.

Just the other day, a massive intrusion into US government computer records has been reported. Government officials tell the Associated Press the hack occurred at the Office of Personnel Management and the Interior Department. It involves information about security clearances and could potentially affect four million people at every federal agency.

Advertisement

Two months ago, a rogue airline pilot took it upon himself to drive a passenger jet into the ground in the French Alps. Security experts told reporters that it is possible to take control of an aircraft remotely in such situations, but they are loathe to create the systems needed to do so for fear they could be hacked by people with malicious intent.

Tesla has been more pro-active than many automakers with regard to security for its onboard software. Most, especially General Motors, claim that their software is protected by the Digital Millenium Copyright Act and threaten anyone who attempts alterations to the code with arrest and prosecution.

Ted Harrington, executive partner at Independent Security Evaluators, believes manufacturers should be taking more measures to protect people’s lives, according to Forbes.  “When it comes to security research, the stakes are the highest when human lives are involved. Securing the connected car is about more than just protecting data; it is about protecting lives. In that vein, auto manufacturers should be going to extreme lengths to harden their systems against the most sophisticated adversaries.

“In order to fully understand and mitigate risk, a system must go through ongoing, thorough, manual white box security assessment. With lives at stake, auto manufacturers in the era of the connected car should consider robust security assessment a business-critical mandate.”

Advertisement

Tesla did offer $10,000 last year to anyone who could hack a Model S. Reportedly, the prize was awarded to Chinese group Qihoo 360. Perhaps Tesla is deeply involved in insuring the digital security of its cars and simply chooses not to talk about the subject publicly. At least we hope so.

"I write about technology and the coming zero emissions revolution."

Advertisement
Comments

News

Tesla reveals huge Cybercab detail in new guide for First Responders

Published

on

Credit: Tesla

Tesla revealed a major new Cybercab detail in a guide it released for First Responders, showing new territory in its beliefs and intentions for the ride-hailing-focused vehicle that entered production in April.

The First Responders Guide is released to give fire departments, paramedics, and other emergency personnel the proper guidance on what to do in the event of an accident, entrapment, or other situation that would require immediate attention.

On one of the pages of the First Responders Guide, Tesla revealed a stark detail about the Cybercab, which could help personnel enter the vehicle more easily in case of an emergency.

Tesla Cybercab has one important piece that AI4 cars might need for FSD

Advertisement

It shows Tesla has no intention of releasing any Cybercab units that were initially proposed for ride-hailing services for the general public with any manual controls, meaning a steering wheel or pedals:

“A Cybercab equipped with steering wheel, brake pedal, and an acceleration pedal is typically an engineering or test vehicle, and operates at SAE Level 2 autonomy. Cybercab is not typically equipped with a steering wheel or acceleration and brake pedals.”

This is a major development for those who continue to believe Tesla planned to release the Cybercab with any sort of manual controls so that passengers could take over if needed. However, when Tesla started manufacturing production versions of the Cybercab in Giga Texas earlier this year, they were spotted without a steering wheel or pedals.

It essentially confirms the company has no intentions of bringing manual controls to the car’s production versions. Some have argued that the likelihood of Tesla having something

There still are some Cybercab units out there with a steering wheel and pedals, and as Tesla said, these cars are engineering or test vehicles, which have Safety Monitors on board to help the car out of a precarious situation or emergency.

Advertisement
Continue Reading

News

Tesla Full Self-Driving v14 ‘Lite’ Release Notes: new capabilities and features

Published

on

(Credit: Megan Gale/Twitter)

Tesla released the Full Self-Driving v14 ‘Lite’ suite to owners of Hardware 3 or AI3 vehicles today, adding several new features to the vehicles that were once believed to be capable of unsupervised self-driving.

Now, Tesla has released this modified suite to older Tesla vehicles, adding plenty of new features and capabilities.

Here are the full release notes for the suite:

  • Distilled the intelligence from HW4 V14 into HW3. This allows HW3 to directly learn how to handle scenarios using HW4 V14 as a guide. This process unlocks the improvements that have been made to HW4 including Reinforcement Learning (RL) and offline models for HW3.
  • Improved both proactive and reactive responsiveness across a wide variety of categories including navigation handling, merges and forks, pedestrian interactions, traffic lights, and vehicle cut-in scenarios.
  • Improved general comfort in nominal scenarios through fewer false slowdowns, smoother steering and more consistent lane centering.
  • Introduced parking, unparking, and reversing capabilities.
  • Added Arrival Options for you to select where FSD should park: in a Parking Lot, on the Street, in a Driveway, or at the Curbside.
  • Speed Profiles are now available at all times, to further customize driving style preference.

These improvements, according to Tesla’s Head of AI, Ashok Elluswamy, help distill the driving behavior from AI4’s v14 series into both the camera and compute configurations of AI3.

Tesla Full Self-Driving v14 ‘Lite’ for older cars finally gets released

Advertisement

He added:

“It includes destination options and speed profiles on city roads, but more importantly significantly improved safety. We hope you’ll enjoy it, once the build ships wide.”

Tesla will continue to roll out the v14 Lite suite more widely in the coming weeks, the company said.

Continue Reading

News

Tesla Full Self-Driving v14 ‘Lite’ for older cars finally gets released

Published

on

tesla model 3 model y
Credit: Tesla Inc.

Tesla has finally released its Full Self-Driving v14 ‘Lite’ suite for older cars that equip the Hardware 3 or AI 3 chip, which have not been able to handle the newest versions of the company’s driver assistance software.

Tesla officially started releasing the v14 Lite suite to owners in the Early Access Program last night. The company’s Head of AI, Ashok Elluswamy, said that the rollout will continue over the next few weeks. The build distills the driving behavior from AI4’s v14 series into both the camera and compute configurations of an AI3 car.

It also includes a variety of new features that were available to AI4 cars running v14, including:

  • Start Self-Driving from Park
  • Arrival and Parking Options
  • Speed Profiles

The release is highly anticipated because those owners with AI3 vehicles were early adopters into the FSD platform and were promised that their cars would be capable of achieving Full Self-Driving.

However, Tesla CEO Elon Musk admitted during the company’s recent Q1 Earnings Call that these vehicles would not be capable of achieving unsupervised Full Self-Driving, which is what Tesla had originally said.

Owners were not pleased with this answer, or the idea that their commitment to buying the suite outright for thousands of dollars would not yield the ability to drive without operating the car. Tesla gave some solutions for this, including a discount on a new car, or an upgrade to an AI4 or AI5 self-driving computer and new, upgraded cameras.

Advertisement

Tesla owners do not seem pleased with these options, as they require giving the company more money.

Nevertheless, it is important to note that Tesla came through for owners here by releasing v14 Lite before the end of Q2, something it had promised owners during the previous Earnings Call. Tesla has had trouble keeping up with timelines, but this is a big achievement for the team.

Continue Reading