PISA Security JAM 2019 x CSA Date: 25-May (Sat)Time: 9:30am - 5:00pmVenue: City University of...
Supporting Event: Sustainability & Smart Retailing Summit 2019 Date: 20th June 2019...
(ISC)² CCSP Clinic at Cloud Expo Asia 2019 Date: 22 May 2019 (Wed)Time: 15:00 - 16:10 Venue:...
Time: 2:00 pm to 4:30 pm
Date: 14 Jan, 2017 (Sat)
Venue: Room Z414, Block Z, The Hong Kong Polytechnics University
We discover severe vulnerabilities in popular telematics systems, through which attackers can remotely replace their firmware with the malicious one and then launch attacks on the vehicles. We have confirmed these vulnerabilities through POC attacks on real vehicles. Moreover, we propose several approaches for fixing these vulnerabilities. We have informed the corresponding companies about the vulnerabilities and the fixing approaches with the help of HKCERT. In this talk, we first introduce the background knowledge of telematics and its attack surface. Then, we detail how to identify and exploit the vulnerability in two telematics systems. Moreover, we discuss how to fix this vulnerability.
Lei Xue is a PhD student in the Department of Computing, the Hong Kong Polytechnic University, working with Dr. Daniel Xiapu Luo. He has been working on network and system security for many yearsand published several papers in top venues (e.g., ICSE, INFOCOM, etc.). His current research interests include network and mobile security.
One CPE can be claimed for the (ISC2) Credential Holder.