Live data from Hacker News

Malware infects Android-based automotive head unit firmware

securelist.com

1–10 of 154 posts

Re: Malware infects Android-based automotive head unit firmware

#2
> Since a head unit typically holds nothing of value to an attacker, one of the more likely attack scenarios using “classic” Android malware is infecting the device to recruit it into a botnet

People do pair them with their phones, though. I could imagine a future version of malware like this propagating laterally.

Re: Malware infects Android-based automotive head unit firmware

#4
post #3

The logical endpoint of the entire "the car as software" concept. Can't wait for the security vendors to start hawking "AV for your car"

I hope we see "de-smartification" conversion kits that replace the electronics with more straightforward (and repairable) offline equivalents. The ultimate AV.

Re: Malware infects Android-based automotive head unit firmware

#5
post #2

> Since a head unit typically holds nothing of value to an attacker, one of the more likely attack scenarios using “classic” Android malware is infecting the device to recruit it into a botnet People do pair them with their phones, though. I could imagine a future version of malware like this propagating laterally.

Head units can log location, navigation start and end points, call logs, call audio, and scrape full contact lists.

Just off the top of my head.

Re: Malware infects Android-based automotive head unit firmware

#7
post #2

> Since a head unit typically holds nothing of value to an attacker, one of the more likely attack scenarios using “classic” Android malware is infecting the device to recruit it into a botnet People do pair them with their phones, though. I could imagine a future version of malware like this propagating laterally.

Head units can log location, navigation start and end points, call logs, call audio, and scrape full contact lists. Just off the top of my head.

That's scary from a user perspective, but harder to monetise at scale as an attacker. Proxy endpoints are just another commodity (and offer recurring revenue).

Re: Malware infects Android-based automotive head unit firmware

#8
For whatever reason, the idea of this being in my car is relatively scarier for me than if this was just my phone ?

I think partially as my mental model of both android auto and CarPlay is that they operate as a passthrough of my device rather than as an separate installation of the OS entirely (I wasn’t aware the head unit itself had the ability to install APKs independently).

Also, feel like John Gruber is going to have a field day with this one

Post reply on HN