20 minutes – "I have total control of thousands of cars"



[ad_1]

A hacker hacked about 27,000 user accounts from two GPS tracking apps. This not only helps to determine the current position of vehicles, but some even allow it to shut down the engine while driving away, the man who calls himself L & M explain to Motherboard.vice.com. However, this is possible only at a speed below 20 km / h.

investigation

Do you change the default password for devices?

Here's how: Install the latest version of the app for 20 minutes. At the top right, touch the three bands, then the gear. If you then drag up, you can enable notifications for the digital channel.

The applications concerned call iTrack and ProTrack. They allow companies to control their entire vehicle fleet via GPS. Through careful analysis of applications, L & M discovered that the default password is 123456. He then wrote a program to guess the names of possible users.

Total control

For the employees of Motherboard.vice.com, the hacker showed what data they could get. Among other things, he discovered the name, model and serial number of the GPS tracker. In addition to the user name, real names, phone numbers, e-mail addresses and postal addresses were also included in the user accounts.

"My goal was the company, not the customers.The customers are in danger because of the company," says L & M during a discussion with the Internet portal. "They want to win from the money, but they do not want to protect their customers, "added the hacker," I can cause traffic problems around the world. I have full control over thousands of vehicles. I can stop the engine of these vehicles with one click. "

Forced security

However, according to L & M, he has never tried this option because stopping the engine while driving is far too dangerous. However, a manufacturer of one of the followers confirmed that it was technically possible. The hacker requested and received a reward for discovering the security breaches.

"The companies warned their customers after my attack, which was a success for me, forced them to take care of the security, they now know that their customers are in danger and are trying to secure less a little bit their devices. "

(Swe)

[ad_2]
Source link