
Tesla ハック: 全車両のインフォテインメント・タッチスクリーン・インターフェースに対する DoS (CVE-2020-10558)
セキュリティ研究者: Jacob Archuleta (@nullze)
Tesla Model 3、Model S、Model X(2020.4.10より前の全バージョン)において、重大なサービス拒否(DoS)脆弱性が発見されました。この脆弱性により、リモートの攻撃者が特別に細工されたWebページを介してChromiumベースのインフォテインメントシステム(MCU)をクラッシュさせ、以下のような重要な車両機能を喪失させる可能性がありました:
この脆弱性は、車載ブラウザ内で特定のWebベースの命令が不適切に処理されることに起因します。リソース枯渇またはプロセス終了ベクトルを悪用することで、攻撃者はModel3-Icefish(または同等のMCU)プロセスを応答不能状態に追い込むことができます。
私はTesla Bugcrowd Bug Bounty Programを通じて責任ある開示プロトコルに従いました。Teslaはこの発見を検証し、問題を緩和するためのフリート全体向けOTA(Over-the-Air)アップデート(v2020.4.10)をリリースしました。
免責事項: このリポジトリは教育および歴史的な記録目的のみです。私は自動車エコシステムの安全性とセキュリティに尽力しています。
Write-upはこちら: https://cylect.io/blog/Tesla_Model_3_Vuln/
プレス:
https://cyber.vumetric.com/vulns/tesla/risk/high/
https://news.ycombinator.com/item?id=22641197
https://portswigger.net/daily-swig/web-based-attack-crashes-tesla-driver-interface
https://dimov.pro/tesla-model-3-vulnerability-what-you-need-to-know-about-the-web-browser-bug/
https://www.securityweek.com/vulnerability-exposed-tesla-central-touchscreen-dos-attacks/
https://eurocybcar.com/enhttps:/eurocybcar.com/casos_crackeos/researcher-hacks-into-a-teslas-screen/
https://hackercar.com/que-descubrio-un-hacker-en-la-pantalla-de-este-tesla/
https://sploitus.com/exploit?id=C087F7C1-D3CA-5595-B8C8-B1545B0F8B61
https://vulners.com/cve/CVE-2020-10558
https://www.cybersecurity-help.cz/vdb/SB2020032310
https://www.cisa.gov/news-events/bulletins/sb20-090-0
https://www.secquest.co.uk/white-papers/exploring-common-vulnerabilities-in-self-driving-cars
https://labs.northit.co.uk/cve/2020/10558/
https://www.genians.com/platform/Tesla_Model_S_Car/?id=29144
学術文献: