<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/">
	<channel>
		<title><![CDATA[ - Finding Attack Surfaces]]></title>
		<link>https://hackmyride.com/forum/</link>
		<description><![CDATA[ - https://hackmyride.com/forum]]></description>
		<pubDate>Sat, 06 Jun 2026 09:51:30 +0000</pubDate>
		<generator>MyBB</generator>
		<item>
			<title><![CDATA[Remote Exploitation of an Unaltered Passenger Vehicle]]></title>
			<link>https://hackmyride.com/forum/showthread.php?tid=2659</link>
			<pubDate>Mon, 27 Mar 2023 18:02:37 -0500</pubDate>
			<dc:creator><![CDATA[<a href="https://hackmyride.com/forum/member.php?action=profile&uid=1">HackMaster</a>]]></dc:creator>
			<guid isPermaLink="false">https://hackmyride.com/forum/showthread.php?tid=2659</guid>
			<description><![CDATA[<span style="font-weight: bold;" class="mycode_b"><span style="font-size: large;" class="mycode_size">Remote Exploitation of an Unaltered Passenger Vehicle<br />
</span></span><br />
<br />
<iframe src="https://ioactive.com/wp-content/uploads/pdfs/IOActive_Remote_Car_Hacking.pdf" width="100%" height="950px"></iframe><br /><!-- start: postbit_attachments_attachment -->
<br /><!-- start: attachment_icon -->
<img src="https://hackmyride.com/forum/images/attachtypes/pdf.png" title="Adobe Acrobat PDF" border="0" alt=".pdf" />
<!-- end: attachment_icon -->&nbsp;&nbsp;<a href="attachment.php?aid=88" target="_blank" title="">Remote Exploitation of an Unaltered Passenger Vehicle.pdf</a> (Size: 4.29 MB / Downloads: 6)
<!-- end: postbit_attachments_attachment -->]]></description>
			<content:encoded><![CDATA[<span style="font-weight: bold;" class="mycode_b"><span style="font-size: large;" class="mycode_size">Remote Exploitation of an Unaltered Passenger Vehicle<br />
</span></span><br />
<br />
<iframe src="https://ioactive.com/wp-content/uploads/pdfs/IOActive_Remote_Car_Hacking.pdf" width="100%" height="950px"></iframe><br /><!-- start: postbit_attachments_attachment -->
<br /><!-- start: attachment_icon -->
<img src="https://hackmyride.com/forum/images/attachtypes/pdf.png" title="Adobe Acrobat PDF" border="0" alt=".pdf" />
<!-- end: attachment_icon -->&nbsp;&nbsp;<a href="attachment.php?aid=88" target="_blank" title="">Remote Exploitation of an Unaltered Passenger Vehicle.pdf</a> (Size: 4.29 MB / Downloads: 6)
<!-- end: postbit_attachments_attachment -->]]></content:encoded>
		</item>
		<item>
			<title><![CDATA[A Survey of Remote Automotive Attack Surfaces]]></title>
			<link>https://hackmyride.com/forum/showthread.php?tid=2658</link>
			<pubDate>Mon, 27 Mar 2023 18:00:13 -0500</pubDate>
			<dc:creator><![CDATA[<a href="https://hackmyride.com/forum/member.php?action=profile&uid=1">HackMaster</a>]]></dc:creator>
			<guid isPermaLink="false">https://hackmyride.com/forum/showthread.php?tid=2658</guid>
			<description><![CDATA[A Survey of Remote Automotive Attack Surfaces<br />
<br />
<br />
<iframe src="https://ioactive.com/wp-content/uploads/pdfs/IOActive_Remote_Attack_Surfaces.pdf" width="100%" height="950px"></iframe>]]></description>
			<content:encoded><![CDATA[A Survey of Remote Automotive Attack Surfaces<br />
<br />
<br />
<iframe src="https://ioactive.com/wp-content/uploads/pdfs/IOActive_Remote_Attack_Surfaces.pdf" width="100%" height="950px"></iframe>]]></content:encoded>
		</item>
		<item>
			<title><![CDATA[DEF CON 22 - Charlie Miller & Chris Valasek]]></title>
			<link>https://hackmyride.com/forum/showthread.php?tid=2552</link>
			<pubDate>Mon, 27 Mar 2023 04:03:25 -0500</pubDate>
			<dc:creator><![CDATA[<a href="https://hackmyride.com/forum/member.php?action=profile&uid=1">HackMaster</a>]]></dc:creator>
			<guid isPermaLink="false">https://hackmyride.com/forum/showthread.php?tid=2552</guid>
			<description><![CDATA[<span style="font-size: large;" class="mycode_size">DEF CON 22 - Charlie Miller & Chris Valasek</span><br />
<span style="font-size: medium;" class="mycode_size">A Survey of Remote Automotive Attack Surfaces - Video and Slides</span><br />
<br />
<br />
<iframe width="560" height="315" src="//www.youtube-nocookie.com/embed/tnYO4U0h_wY" frameborder="0" allowfullscreen="true"></iframe>]]></description>
			<content:encoded><![CDATA[<span style="font-size: large;" class="mycode_size">DEF CON 22 - Charlie Miller & Chris Valasek</span><br />
<span style="font-size: medium;" class="mycode_size">A Survey of Remote Automotive Attack Surfaces - Video and Slides</span><br />
<br />
<br />
<iframe width="560" height="315" src="//www.youtube-nocookie.com/embed/tnYO4U0h_wY" frameborder="0" allowfullscreen="true"></iframe>]]></content:encoded>
		</item>
		<item>
			<title><![CDATA[Attack Surfaces]]></title>
			<link>https://hackmyride.com/forum/showthread.php?tid=431</link>
			<pubDate>Sat, 25 Feb 2023 04:28:57 -0600</pubDate>
			<dc:creator><![CDATA[<a href="https://hackmyride.com/forum/member.php?action=profile&uid=1">HackMaster</a>]]></dc:creator>
			<guid isPermaLink="false">https://hackmyride.com/forum/showthread.php?tid=431</guid>
			<description><![CDATA[<span style="color: #eeeeee;" class="mycode_color"><span style="font-weight: bold;" class="mycode_b">Understanding Attack Surfaces</span></span><br />
<br />
<span style="color: #eeeeee;" class="mycode_color">If you come from the software penetration-testing world you</span><br />
<span style="color: #eeeeee;" class="mycode_color">probably already get this. For the rest of us, attack surface means all</span><br />
<span style="color: #eeeeee;" class="mycode_color">the possible ways to attack a target. The target could be a</span><br />
<span style="color: #eeeeee;" class="mycode_color">component or the entire vehicle. At this stage we do not consider</span><br />
<span style="color: #eeeeee;" class="mycode_color">how to exploit any piece of the target, we are only concerned with all</span><br />
<span style="color: #eeeeee;" class="mycode_color">the “entry points” into it.</span><br />
<span style="color: #eeeeee;" class="mycode_color">Think of yourself as an evil spy, trying to do bad things to the</span><br />
<span style="color: #eeeeee;" class="mycode_color">vehicle. To find the weaknesses, evaluate the perimeter and</span><br />
<span style="color: #eeeeee;" class="mycode_color">document the environment. For a vehicle, we need to consider all</span><br />
<span style="color: #eeeeee;" class="mycode_color">the ways data can get into the vehicle – that is, all the ways the</span><br />
<span style="color: #eeeeee;" class="mycode_color">vehicle communicates with the outside world.</span><br />
<span style="color: #eeeeee;" class="mycode_color">From outside the vehicle:</span><br />
<span style="color: #eeeeee;" class="mycode_color">- What signals are received? Radio waves? Keyfobs? Distance</span><br />
<span style="color: #eeeeee;" class="mycode_color">sensors?</span><br />
<span style="color: #eeeeee;" class="mycode_color">- Physical keypad access?</span><br />
<span style="color: #eeeeee;" class="mycode_color">- Touch or motion sensors?</span><br />
<span style="color: #eeeeee;" class="mycode_color">- If electric, how does it charge?</span><br />
<span style="color: #eeeeee;" class="mycode_color">From inside the vehicle:</span><br />
<span style="color: #eeeeee;" class="mycode_color">- Audio input options: CD? USB? Bluetooth?</span><br />
<span style="color: #eeeeee;" class="mycode_color">- Diagnostic ports?</span><br />
<span style="color: #eeeeee;" class="mycode_color">- What are the capabilities of the dashboard? GPS? Bluetooth?</span><br />
<span style="color: #eeeeee;" class="mycode_color">Internet?</span><br />
<span style="color: #eeeeee;" class="mycode_color">Once you have thought about this, you should have realized there</span><br />
<span style="color: #eeeeee;" class="mycode_color">are a LOT of ways data can enter the vehicle. If any of this data is</span><br />
<span style="color: #eeeeee;" class="mycode_color">malformed or intentionally malicious, what happens?</span>]]></description>
			<content:encoded><![CDATA[<span style="color: #eeeeee;" class="mycode_color"><span style="font-weight: bold;" class="mycode_b">Understanding Attack Surfaces</span></span><br />
<br />
<span style="color: #eeeeee;" class="mycode_color">If you come from the software penetration-testing world you</span><br />
<span style="color: #eeeeee;" class="mycode_color">probably already get this. For the rest of us, attack surface means all</span><br />
<span style="color: #eeeeee;" class="mycode_color">the possible ways to attack a target. The target could be a</span><br />
<span style="color: #eeeeee;" class="mycode_color">component or the entire vehicle. At this stage we do not consider</span><br />
<span style="color: #eeeeee;" class="mycode_color">how to exploit any piece of the target, we are only concerned with all</span><br />
<span style="color: #eeeeee;" class="mycode_color">the “entry points” into it.</span><br />
<span style="color: #eeeeee;" class="mycode_color">Think of yourself as an evil spy, trying to do bad things to the</span><br />
<span style="color: #eeeeee;" class="mycode_color">vehicle. To find the weaknesses, evaluate the perimeter and</span><br />
<span style="color: #eeeeee;" class="mycode_color">document the environment. For a vehicle, we need to consider all</span><br />
<span style="color: #eeeeee;" class="mycode_color">the ways data can get into the vehicle – that is, all the ways the</span><br />
<span style="color: #eeeeee;" class="mycode_color">vehicle communicates with the outside world.</span><br />
<span style="color: #eeeeee;" class="mycode_color">From outside the vehicle:</span><br />
<span style="color: #eeeeee;" class="mycode_color">- What signals are received? Radio waves? Keyfobs? Distance</span><br />
<span style="color: #eeeeee;" class="mycode_color">sensors?</span><br />
<span style="color: #eeeeee;" class="mycode_color">- Physical keypad access?</span><br />
<span style="color: #eeeeee;" class="mycode_color">- Touch or motion sensors?</span><br />
<span style="color: #eeeeee;" class="mycode_color">- If electric, how does it charge?</span><br />
<span style="color: #eeeeee;" class="mycode_color">From inside the vehicle:</span><br />
<span style="color: #eeeeee;" class="mycode_color">- Audio input options: CD? USB? Bluetooth?</span><br />
<span style="color: #eeeeee;" class="mycode_color">- Diagnostic ports?</span><br />
<span style="color: #eeeeee;" class="mycode_color">- What are the capabilities of the dashboard? GPS? Bluetooth?</span><br />
<span style="color: #eeeeee;" class="mycode_color">Internet?</span><br />
<span style="color: #eeeeee;" class="mycode_color">Once you have thought about this, you should have realized there</span><br />
<span style="color: #eeeeee;" class="mycode_color">are a LOT of ways data can enter the vehicle. If any of this data is</span><br />
<span style="color: #eeeeee;" class="mycode_color">malformed or intentionally malicious, what happens?</span>]]></content:encoded>
		</item>
		<item>
			<title><![CDATA[Comprehensive Experimental Analyses of Automotive Attack Surfaces]]></title>
			<link>https://hackmyride.com/forum/showthread.php?tid=108</link>
			<pubDate>Thu, 23 Feb 2023 16:59:37 -0600</pubDate>
			<dc:creator><![CDATA[<a href="https://hackmyride.com/forum/member.php?action=profile&uid=1">HackMaster</a>]]></dc:creator>
			<guid isPermaLink="false">https://hackmyride.com/forum/showthread.php?tid=108</guid>
			<description><![CDATA[<span style="font-size: large;" class="mycode_size">Comprehensive Experimental Analyses of Automotive Attack Surfaces</span><br />
<br />
<br />
<iframe src="https://www.autosec.org/pubs/cars-usenixsec2011.pdf" width="100%" height="950px"></iframe>]]></description>
			<content:encoded><![CDATA[<span style="font-size: large;" class="mycode_size">Comprehensive Experimental Analyses of Automotive Attack Surfaces</span><br />
<br />
<br />
<iframe src="https://www.autosec.org/pubs/cars-usenixsec2011.pdf" width="100%" height="950px"></iframe>]]></content:encoded>
		</item>
	</channel>
</rss>