Researchers Find Vulnerabilities in CAN XL Automotive Standard
A joint study by Georgia Tech, QCRI, and Purdue found that the new CAN XL automotive communication standard, intended to replace classic CAN in vehicles, is still susceptible to all existing vulnerabilities in its MAC sub-layer, and introduces seven additional security flaws. The researchers validated these issues using commercial CAN XL controllers and demonstrated attacks on a simulated vehicle network. Mitigations and formal standard revisions are proposed in the study.
- CAN XL designed to replace classic CAN in vehicles
- Formal study finds existing and new vulnerabilities
- Seven additional flaws discovered in CAN XL MAC sub-layer
- Validated using real CAN XL hardware and simulated attacks
- Researchers propose formal verification of standard updates
Sources covering this
More in Cybersecurity
Chinese hackers use Warlock ransomware in SharePoint attacks
A Chinese hacking group has used Warlock ransomware to target organizations serving essential services in Portuguese- and…
Dell issues urgent patches for critical CSM vulnerabilities
Dell has released fixes for two critical vulnerabilities in its Container Storage Modules (CSM), which link enterprise storage arrays to…
Microsoft's X account compromised to promote crypto scam
Unknown attackers took control of Microsoft's official X account, which has over 13 million followers, to promote a fraudulent…
Federal judge rules warrantless Flock search unconstitutional
A federal judge in Oklahoma found that a police officer violated constitutional protections by checking a car's license plate in Flock’s…