Headline | Mercedes component source code leaked | |
---|---|---|
Year | 2020 | |
Month | May | |
Country | Germany | |
Description | Software engineer Till Kottmann discovered that he was able to register an account on a portal, called Git, where Daimler – the brand that owns Mercedes – hosts its codes. Once there, he was able to download up to 580 data sets with these source codes, which are used in the ‘integrated logic units’ -OLU- that Mercedes vans carry -for example, the Vito manufactured in Spain-.An OLU is the component that sits between the hardware and software of a car, and according to Daimler itself, it allows vehicles to be connected to the cloud. In this way, the OLU, in combination with certain applications, can be used to control remote functions of the car, such as locating its position, knowing the vehicle’s status, stopping the engine in the event of theft… According to the threat intelligence firm Under the Breach, the data found could be used to attack the cloud and Daimler’s internal network.
| |
Intentionality | Cracker | |
Target | Company | |
Company | Mercedes-Benz | |
Type of company | OEM | |
Data / Life | Data and Life | |
Access | Aplication | |
Recognized by brand | No | |
Source | https://www.zdnet.com/article/mercedes-benz-onboard-logic-unit-olu-source-code-leaks-online/ |