Live data from Hacker News

Volkswagen blocks Home Assistant by requiring client assertion

github.com

191–200 of 203 posts

Re: Volkswagen blocks Home Assistant by requiring client assertion

#191
post #160

Earlier quoted context omitted.

You should email Louis Rossmann, he's been helping people in similar situations.

I cannot figure out of Louis is Batman or Don Quixote, charging at the "windmills" of MAMAA: (Meta, Apple, Microsoft, Amazon, Alphabet).

Don Quixote feels like a bad analogy. These are real dragons. Just, more difficult to fight against.

Re: Volkswagen blocks Home Assistant by requiring client assertion

#192

Earlier quoted context omitted.

Another interesting case: a proven case of bit-flip that affected a voting machine in Belgium: https://www.independent.co.uk/news/science/subatomic-particl...

“ A mobile phone with 500 kilobytes of memory might only have one error every 28 years, but a router farm, such as those used by Internet providers, with 25 gigabytes of memory could have one every 17 hours.” I wonder if current AI devices have protection against this…

[deleted]

Re: Volkswagen blocks Home Assistant by requiring client assertion

#193
post #183

Earlier quoted context omitted.

Hard pass. I think it’s fair, less corrupt, and more interesting that the Belgian DPA rules over Belgian privacy complaints. We might argue they will produce better/worse results than another DPA. Okay. But the whole point of much EU policy is that the member states preside over stuff themselves. That seems better than a (more) centralised bureaucracy.

Not in this case I think. This affects customers Europe wide and it should be solved at EU level.

It probably will be once all the appeals have finished.

You can't just bypass national courts and go straight to the EU.

Re: Volkswagen blocks Home Assistant by requiring client assertion

#194

Quite a few other manufacturers have done the same thing. I use a reverse engineered Polestar library to get charging status but I'm in the middle of building a CANBUS sniffer to do the same job because I don't trust they won't do the same thing as this. I don't really understand it, it doesn't seem to offer a huge potential revenue stream and it pisses off the people who are most invested in your product.

I open my VW app and I think I know why:

https://imgur.com/a/nj0dLku

Re: Volkswagen blocks Home Assistant by requiring client assertion

#196
post #128

Earlier quoted context omitted.

If you look at the greater NW European area there were (are still?) several startups, non got big enough to matter and they did not have infinite money to survive like some US based PE funded ones can. And even for Germany a quick "car startup germany" search will give you a few.

Which German/NW car start brands are start-ups?

StreetScooter

Re: Volkswagen blocks Home Assistant by requiring client assertion

#197
post #160

Earlier quoted context omitted.

I cannot figure out of Louis is Batman or Don Quixote, charging at the "windmills" of MAMAA: (Meta, Apple, Microsoft, Amazon, Alphabet).

Don Quixote feels like a bad analogy. These are real dragons. Just, more difficult to fight against.

At least some of Louis’s dragons seem to live in a bottle, considering his very public freakout a few years ago where he accused Apple of putting secret spy chips in his laptop to spy on him through the camera.

In the end there were no spy chips, obviously.

Re: Volkswagen blocks Home Assistant by requiring client assertion

#199
post #59

Earlier quoted context omitted.

They already add cryptographic authentication to some CAN messages, so you can't change them. It is only a matter of time until they add encryption. This is mostly a corporate problem of risk aversion in my opinion. Some department writes down a risk assessment with a list of miniscule risks, for example of some 3rd party app backend being hacked. Or just a headline "Tinkerer hacked his car to use with his home assis…

> draconian countermeasures are drafted and constructed one by one. Except when it’s about privacy or anything else we actually care about: then absolutely nothing is done because it would cost more than 0 to do anything.

Depends. In some sense EU companies are quite afraid of the GDPR. Privacy is used in a twisted way in that argument: if any privacy relevant data is exposed to another party, and there is any incident down the line, they fear they could be made responsible. So they to block you as a user to access your own data.

Of course, if that privacy risk came from them storing and selling your data, they happily accept that, you are right in that regard.

Post reply on HN