Live data from Hacker News

Tesla Wall Connector bootloader bypasses the firmware downgrade ratchet

synacktiv.com

31–40 of 90 posts

Re: Tesla Wall Connector bootloader bypasses the firmware downgrade ratchet

#31
post #3

Earlier quoted context omitted.

You can bypass vehicle restrictions. You could potentially then use it for J1772-compatible EVs (like a Chevy Bolt or Nissan Leaf) Or just for the spirit of actually owning the shit you pay for.

What vehicle restrictions? This is for the Tesla home charger, not Superchargers.

Some don't support j1772 adapters with non Tesla vehicles

Re: Tesla Wall Connector bootloader bypasses the firmware downgrade ratchet

#32

PSA: If your wall connector loses wifi, it'll just throw your charging schedules out the window and turn on/off sporadically. This is especially noteworthy if you have Time of Use billing :| SET THE TIMER ON THE CAR DIRECTLY!

or, use Home Assistant to handle your charging schedules.

Re: Tesla Wall Connector bootloader bypasses the firmware downgrade ratchet

#33

Repeat after me: An owner voluntarily downgrading firmware to gain control of your hardware IS NOT A HACK. And if an adversary is doing this, then they have already breached yoir physical security.

Eh, that’s a bad generalization. defense in depth is a thing and there are many cases where you’d want to protect against attackers with physical access

Any system where your defense in depth involves UDS is pretty much guaranteed to be broken though.

Re: Tesla Wall Connector bootloader bypasses the firmware downgrade ratchet

#34

Repeat after me: An owner voluntarily downgrading firmware to gain control of your hardware IS NOT A HACK. And if an adversary is doing this, then they have already breached yoir physical security.

I thought the same thing. How white hat do you have to be to consider ineffective DRM a vulnerability?

Re: Tesla Wall Connector bootloader bypasses the firmware downgrade ratchet

#36

Repeat after me: An owner voluntarily downgrading firmware to gain control of your hardware IS NOT A HACK. And if an adversary is doing this, then they have already breached yoir physical security.

This exploit is delivered through the charging cable to the wall box. These wall boxes are sometimes intentionally located in public spaces with the intent of allowing public charging, and Tesla has features specifically for that use case, so that cable is absolutely expected to be plugged in to untrusted vehicles.

Re: Tesla Wall Connector bootloader bypasses the firmware downgrade ratchet

#38

PSA: If your wall connector loses wifi, it'll just throw your charging schedules out the window and turn on/off sporadically. This is especially noteworthy if you have Time of Use billing :| SET THE TIMER ON THE CAR DIRECTLY!

It also fits the broader theme here: too much important behavior seems to live in the "application layer" of the charger, while the more durable source of truth is elsewhere.

Re: Tesla Wall Connector bootloader bypasses the firmware downgrade ratchet

#39
post #23

Earlier quoted context omitted.

[flagged]

Your comment makes no sense. The tesla wall connector is a home charging port you install in your garage.

I knew this is about wall charger at home but I assumed ‘time of use billing’ was some kind of billing system for the charger that’s implemented.
Post reply on HN