Live data from Hacker News

Norway reviews cybersecurity after remote-access feature found in Chinese buses

scandasia.com

181–190 of 235 posts

Re: Norway reviews cybersecurity after remote-access feature found in Chinese buses

#181
post #4

This is just stupid. All modern vehicles har been fully remote controllable for years.

I fully agree. If these were buses from any other country, this would not be an issue. Every road vehicle sold today has a sim card, most for diagnostics, some for remote control.

International politics does matter. So, yes, a country that is historically hostile, or allied with countries that are hostile, towards yours, gets different treatment.

Re: Norway reviews cybersecurity after remote-access feature found in Chinese buses

#182

Earlier quoted context omitted.

Glad you listed, because that data shows apart from Sino Vietnamese almost half a century ago, PRC launched basically no wars of aggression, i.e. everything including SCS was territorial defense, i.e just. And if it was in chart form, the peace disease lull in last 30 years relative to PRC growth makes modern PRC rise the most unprescedently peaceful in modern history, borderline on absurdly serenity. Truly somehting…

The invasion of Zhenbao island was "territorial defense", really?

Before asking this question, can you Google "Zhenbao Island" first?

Re: Norway reviews cybersecurity after remote-access feature found in Chinese buses

#183

Earlier quoted context omitted.

To me this smells of rather basic economic/political propaganda to scare people. The collective west is clearly getting orders from high above to apply pressure on China and it may just be that this is part of it, spreading an air of concern and fear to dissuade other people who pay attention to this kind of thing in municipalities to avoid Chinese manufacturers. It's rather basic social engineering that has the ham…

I don't think it's orders as much as vibes. Some people have finely tuned senses for what they should do to be seen as one of the trustworthy ones, the ones that get it, the ones we could use in a more important job. And that trickles down: one of the things you do, is obviously to network with and boost people who look out for the same kind of political trustworthiness. The ones at the top, assuming they're not asle…

I mean, there's a lot of truth to this stuff: tech, and software, is extremely insecure, unknowably complex, and increasingly the most damaging avenue for an attack. I think the propaganda comes in when we point the finger at China, as if this isn't a problem in general.

Here in the US, all of our vehicles have SIM cards and they have for decades. They sent off God knows what data, to God knows who, and they remotely receive commands, too. Could you car be hacked? If it was, would you ever be able to find out? Both of those questions are not easy to answer.

Really, ALL of our tech works this way. That Android phone? It has countless binary blobs doing who-knows-what. It runs proprietary code at ring 0, and has access to the cellular bands. If it was compromised, you wouldn't know, especially if the attack was targeted. The people making the software and hardware are already "exploiting" it right now - mostly to gather data for advertising, ostensibly. But how do you know these systems are secure? We're talking millions of lines of C code, interfacing directly with the hardware, running at maximum privileges, written by people you don't know, which cannot be audited.

Re: Norway reviews cybersecurity after remote-access feature found in Chinese buses

#184

Earlier quoted context omitted.

So now you have a state-owned Chinese monopoly controlling your transportation.

Just don't buy from them. Do you think making a local monopoly in Europe will lower European prices? Who the fuck invented that logic of "those companies prices are too high, we have to let them consolidate into a monopoly so they lower their prices"?

Prices aren’t the problem.

China turning off your transportation is.

Re: Norway reviews cybersecurity after remote-access feature found in Chinese buses

#185

Whats sad is Norway sits right next to the country which manufactures Scania and Volvo Busses, but instead buys busses from thousands of km away. I suppose cost is all that maters these days, even for national infrastructure which must remain in control and secure.

China is a decade ahead of Scania/Volvo in electric busses. Likely neither had a suitable product on the market when the busses were purchased.

Re: Norway reviews cybersecurity after remote-access feature found in Chinese buses

#186
post #15

Earlier quoted context omitted.

Of course they're compromised, by Apple, to comply with UK law.

Well only in the UK, if you have the -banned in the UK- ADP on as far as people know it’s not compromised

If the NSA hasn't compromised them then what are they even spending their budget on?

Re: Norway reviews cybersecurity after remote-access feature found in Chinese buses

#187

This is likely laziness more than malice, but... why are busses connected to the internet?

In China, most of buses in first-tier cities are connected to the internet to report their location and status. This allows you to check the approximate location of the next bus and a relatively accurate arrival time on a map app. It's especially useful in bad weather or traffic congestion , as you don't have to wait in heavy rain or strong winds for a bus with an uncertain arrival time.

Re: Norway reviews cybersecurity after remote-access feature found in Chinese buses

#188
post #117

Earlier quoted context omitted.

This seems like the most obvious solution, provided local offers aren't massively more expensive. I don't see why we wouldn't award contracts to EU companies that create jobs here, pay taxes here, and follow local regulations. We don't need a super company with a local monopoly, just to stop prioritising “as cheap as possible”.

The reason why is because if they did China would retaliate and cut off cheap access to Chinese imports. That is the double edged sword of globalization the US and Europe are reckoning with today, in different ways

"China would retaliate and cut off cheap access to Chinese imports"

That still would come at a hefty price for china as that means no or way lower income for quite a lot of chinese companies and people.

Re: Norway reviews cybersecurity after remote-access feature found in Chinese buses

#189
post #141
post #95

Earlier quoted context omitted.

The parent comment is describing a scenario where the Chinese company may get a factual monopoly in Europe because it can outcompete the two European companies due to economies of scale.

Or outcompete because it's state-funded, and can inject things like remote access (that the state might like the option to use one day). It's really confusing that the EU don't consider this "dumping". I thought that was this big thing that they cared about.

I definitely would not rule out the occasional strategic bribe. China has a ton of interests in Brussels. Ditto the USA.

Re: Norway reviews cybersecurity after remote-access feature found in Chinese buses

#190
post #95
post #41

Earlier quoted context omitted.

The European champion would still be ten times smaller than the Chinese but would have factual monopoly in Europe. I don’t think blocking the merger was entirely unreasonable.

The parent comment is describing a scenario where the Chinese company may get a factual monopoly in Europe because it can outcompete the two European companies due to economies of scale.

Chinese companies will get a factual monopoly no matter what, as long as they keep comparing imports vs domestics on prices. It's not like East Asian "subsidies" are going to end in 3 to 6 months, years, even decades. The imports from timbuktu will be just perpetually cheaper by being imports.
Post reply on HN