Sophisticated Car Thefts

Logal727

Well-Known Member
First Name
C
Joined
Aug 23, 2021
Threads
101
Messages
7,351
Reaction score
11,347
Location
Florida
Vehicles
‘21 Carbonized Gray Mustang Mach-E Premium AWD Ext
Country flag
OP
OP
IMDIDOC

IMDIDOC

Well-Known Member
First Name
Alex
Joined
Apr 26, 2021
Threads
25
Messages
270
Reaction score
282
Location
Buffalo NY
Vehicles
2021 Mach-E FE
Occupation
Optometrist
Country flag
I mean it’s just a fob repeater, if you’re concerned, put your fob in a faraday bag at night or keep it far away from the vehicle.
It's a safe distance away, so no worries. It's just amazing how technology can be used in criminal activities. Someone once said if you don't want any risk of having your car stolen, don't own one.
 

ArthurDOB

Well-Known Member
First Name
Arthur
Joined
Dec 16, 2022
Threads
24
Messages
1,303
Reaction score
1,359
Location
Twin Cities West Metro, Minnesota
Vehicles
Mach-e Premium AWD STD Range (Delivered 5/22/23)
Occupation
High School Teacher
Country flag
I saw this. Two takeaways:
1: Keep your keys away from the front door.
2: Keep your car in the garage
 

Mach-Lee

Well-Known Member
First Name
Lee
Joined
Jul 16, 2021
Threads
262
Messages
11,366
Reaction score
25,031
Location
Wisconsin
Vehicles
2022 Mach-E Premium AWD
Occupation
Sci/Eng
Country flag
Ford needs to add motion sensors in the key fobs so they become disabled if they remain stationary for more than a couple minutes.

PAAK may also be susceptible to a Bluetooth relay attack, so I recommend keeping the FordPass app closed (and prevented from running in the background) when not using your vehicle.
 


Logal727

Well-Known Member
First Name
C
Joined
Aug 23, 2021
Threads
101
Messages
7,351
Reaction score
11,347
Location
Florida
Vehicles
‘21 Carbonized Gray Mustang Mach-E Premium AWD Ext
Country flag
PAAK may also be susceptible to a Bluetooth relay attack
I don’t think this is correct. I remember when this came up a while ago, but I’m too lazy to argue about it now lol
 

Mach-Lee

Well-Known Member
First Name
Lee
Joined
Jul 16, 2021
Threads
262
Messages
11,366
Reaction score
25,031
Location
Wisconsin
Vehicles
2022 Mach-E Premium AWD
Occupation
Sci/Eng
Country flag

voxel

Well-Known Member
First Name
Nelson
Joined
Sep 6, 2021
Threads
27
Messages
2,032
Reaction score
1,858
Location
Altamonte Springs, FL
Vehicles
22 Mach-E 4X, 23 GC Limited
Occupation
Software Engineer
Country flag
I don’t think this is correct. I remember when this came up a while ago, but I’m too lazy to argue about it now lol
Any system that uses BLE without UWB is susceptible to Bluetooth hacking. Digital Key 3.0 system with UWB is supposed to solve the security concerns.

I think Digital Key 1.0 or 2.0 are NFC based... like on my Ioniq 5 and BMW i4 where you have to tap the phone against a specific location on the car (usually door handle).

Tesla, Ford PAAK, Rivian, etc. are all problematic PAAK systems.
 

Cm12

Well-Known Member
First Name
Chris
Joined
Oct 25, 2021
Threads
3
Messages
291
Reaction score
461
Location
Oregon
Vehicles
2021 Mach E Premium
Country flag

Motomax

Well-Known Member
First Name
Max
Joined
Jul 19, 2021
Threads
5
Messages
1,019
Reaction score
1,027
Location
California
Vehicles
VW GLI, 4Runner
Country flag
Glad you finally came out from under your rock lol. This has been an issue since push to start came out.
 

JohnFoxeSheets

Well-Known Member
First Name
John
Joined
Jan 29, 2022
Threads
28
Messages
3,415
Reaction score
5,514
Location
San Francisco
Website
johnfoxesheets.com
Vehicles
2022 Iced Blue Silver Mach E GT
Occupation
Retired Engineer
Country flag
Ford needs to add motion sensors in the key fobs so they become disabled if they remain stationary for more than a couple minutes.

PAAK may also be susceptible to a Bluetooth relay attack, so I recommend keeping the FordPass app closed (and prevented from running in the background) when not using your vehicle.
Low latency (~8 ms), link level attacks have been developed, which would be very difficult to protect against. They work on Teslas, I would imagine it would also work on Fords too. This attack didn’t exist yet when PAAK was developed.

https://www.bleepingcomputer.com/ne...sla-model-3-y-using-new-bluetooth-attack/amp/
Interestingly Ford could presumably easily enable the motion requirement on the FP app so that PaaK doesn’t work when the phone is stationary. That would go a long way to address PaaK as an attack vector.
 

Mach-Lee

Well-Known Member
First Name
Lee
Joined
Jul 16, 2021
Threads
262
Messages
11,366
Reaction score
25,031
Location
Wisconsin
Vehicles
2022 Mach-E Premium AWD
Occupation
Sci/Eng
Country flag
Interestingly Ford could presumably easily enable the motion requirement on the FP app so that PaaK doesn’t work when the phone is stationary. That would go a long way to address PaaK as an attack vector.
Yup, the iPhone has the perfect developer parameter for that, so would be easy to implement:

Ford Mustang Mach-E Sophisticated Car Thefts IMG_2373


If the phone is stationary for 5 continuous minutes, then it should disable PAAK replies. This would also help avoid 12V battery drains and break ins when people park close to their phone. There would be a learning curve and people would have to be educated about the motion requirement to avoid frustration. For example, if someone has been sitting in their car parked with their phone on the seat for a few minutes, you'd have to pick up your phone before you could start the car.
 

MellowJohnny

Well-Known Member
First Name
Christian
Joined
Nov 16, 2021
Threads
95
Messages
1,683
Reaction score
2,835
Location
YYZ
Vehicles
2022 Mach-E Premium AWD
Occupation
Solution Architect
Country flag

the golden eel

Well-Known Member
Joined
Dec 12, 2022
Threads
9
Messages
297
Reaction score
650
Location
Twin Cities, MN
Vehicles
MME 2022 Premium AWD Extended Range
Country flag
I've wondered about this before... If someone were to steal my MME, wouldn't I be able to see where it is in the FordPass app?
Sponsored

 
 







Top