New Vehicle Hack Threat Exposed
Security experts at Zingbox demonstrated a cybersecurity weakness intrinsic to vehicles with tablet-style driver console displays.


Cybersecurity expert Daniel Regalado will demonstrate at DefCon 26 a vulnerability in tablet-style in-vehicle displays such as that found in the Tesla Model X; it is not known what vehicle Regalado and his team claim to have successfully hacked. Photo courtesy Tesla Inc.
MOUNTAIN VIEW, Calif. — Connected device management and security provider Zingbox announced new research that shows how a car’s driver can be subject to cybersecurity attacks through the car’s “infotainment” system, the embedded operating system powering the iPad-looking displays found on many recent new vehicles.
Daniel Regalado, Zingbox’s principal security researcher, has agreed to demonstrate the vulnerability at the DefCon 26 Car Hacking Village in Las Vegas tomorrow. In a statement released today, the company revealed that Regalado teamed with independent researchers Gerardo Iglesias and Ken Hsu to break into a car’s infotainment system and reverse-engineer its main components with one goal in mind: to infect the operating system with malware and prove the system could be controlled remotely through SMS messages, using the driver’s own phone to compromise their personal data and safety.
“In order to provide real-time security to all IoT devices, Daniel Regalado and others on Zingbox’s research team continuously push the boundaries of IoT vulnerability research,” said Xu Zou, the company’s CEO and co-founder. “We’re glad to share our latest findings with the broader security community and raise the awareness of the impact of IoT device vulnerabilities.”
An auto infotainment system depends on the Internet of Things to operate. The fact that an infotainment system can be breached suggests the need for stepped-up IoT cybersecurity solutions similar to what is already available for such devices in healthcare, financial services, and manufacturing. This would protect drivers, especially the millions of car renters around the world, Regalado said.
“The fact that we can infect a car’s infotainment system and expose private data sheds light on an important vulnerability for manufacturers going forward,” he added, noting he has also recently hacked a telepresence robot, an IV pump, and other medical devices.
More Digital

Zurich Launches Advisor IQ for F&I Manager Coaching
The new platform uses real transaction data and artificial intelligence-driven insights to help car dealerships improve consistency and performance.
Read More →
F&I in the Digital Age
Digital retailing has not made the F&I manager obsolete. If anything, it has revealed how valuable the role can become when technology is used correctly.
Read More →
Need for Speed: EV Apps Lack Consistency
Fifty-five percent of surveyed EV owners said their mobile applications had a major or moderate impact on their purchasing decisions, but connectivity issues remain a problem.
Read More →
Four Keys to Your Digital Trail Defense
Federal regulators are cracking down on hidden fees. This protective measure could mean the difference between winning and losing a lawsuit or surviving a duel with the Dark Side.
Read More →
Hyundai Hosts Tech Talent Forum
Technology leaders from Hyundai Motor Group will have open discussions at the inaugural HMG Tech Talent Forum on topics ranging from autonomous driving to 'smart' manufacturing.
Read More →
Dealers Seek Actionable AI
Dealers are facing growing frustrations with current generic artificial intelligence tools, according to a survey by Lotlinx, which found they want a solution that understands their inventories.
Read More →
Reahard & Associates Forges New Integration
The firm's F&I Insight tie-up with The Impact Group’s ImpactMenu platform is designed to enhance finance-and-insurance transaction recording for auto dealerships.
Read More →
Registration Open for Reynolds Amplify Retail Summit
Advancements with Reynolds' AI Agent, Rey, will take center stage this August at the Park Hyatt Aviara in Carlsbad, Calif., near San Diego.
Read More →
Automotive Training Academy by Assurant Grows Offering
A new Atlanta location on Reynolds and Reynolds' docuPAD e-contracting system is designed to broaden access for auto professionals.
Read More →
Assurant Debuts Virtual Solution for Dealers' Staffing Challenges
Company says on-demand access to F&I specialists is shown to boost dealership efficiency and profitability.
Read More →