Electric Vehicle DC charging tripped by a wireless hack

GoGoGadgetMachE

Well-Known Member
First Name
Michael
Joined
Jan 23, 2020
Threads
153
Messages
5,612
Reaction score
12,669
Location
Ohio
Vehicles
2021 Mach-E 1st Ed., 2022 Lightning Platinum
Occupation
Professional forum cheerleader and fanboy
Country flag
Infoseccers abort DC charging via wireless hack • The Register


Researchers from the University of Oxford published details of a vulnerability in the Combined Charging System that has the potential to abort charging.

The Combined Charging System (CCS) is one of the plethora of standards in the EV charging world, and allows DC fast charging.

Different plug types are used for the US and EU regions (dubbed Combo 1 and 2 respectively) but both use the same underlying technology. As well as taking in all that lovely charge, the EV and the Electric Vehicle Supply Equipment (EVSE) swap messages concerning how charged things are, the maximum possible current and so on. The link used for the communication is provided by the HomePlug Green PHY (HPGP) power-line communication (PLC) technology.

The researchers created a lab testbed that consisted of the same HPGP modems used in most EVs and charging stations at the victim end, and a software defined radio replete with a 1W RF amplifier on an antenna the team made themselves (with which to carry out the attack).

They also took the kit out into the real world and tried it in test sites on seven vehicles from different manufacturers and 18 DC high-power chargers.

The results make for grim reading. The off-the-shelf gear managed to abort the charging process from up to 10 meters away from the target with a power budget of 10mW. The closer one got, the less power was needed to cause a 100 percent packet loss. When outside the lab, the team stuck to a maximum output power of 1W to avoid breaking any national transmission regulations.

Before EV vehicle owners panic about their beloved trundle-wagons being targeted in this way, the attack only interrupts the charging (a victim would need to simply disconnect and reconnect their vehicle.) Researchers found no evidence of any long-term damage caused by the attack. They also reckoned that home AC chargers (which use a different communication standard) were also unlikely to be affected, although cautioned that things could change as home chargers received ISO 15118 support.


(more at source)
Sponsored

 

timbop

Well-Known Member
First Name
Tim
Joined
Jan 3, 2020
Threads
65
Messages
6,832
Reaction score
14,036
Location
New Jersey
Vehicles
Solar powered 2021 MME ER RWD (CA RT1)
Occupation
Software Engineer
Country flag
While this vulnerability is at the nuisance level, I can foresee a certain segment of the population getting their kicks off of something like this.
 

generaltso

Well-Known Member
Joined
Jun 24, 2020
Threads
76
Messages
15,389
Reaction score
28,696
Location
Vermont
Vehicles
2024 Kia EV9 GT-Line
Country flag
Wouldn't it be easier for a "hacker" to just hit the stop button on the charger?
 

timbop

Well-Known Member
First Name
Tim
Joined
Jan 3, 2020
Threads
65
Messages
6,832
Reaction score
14,036
Location
New Jersey
Vehicles
Solar powered 2021 MME ER RWD (CA RT1)
Occupation
Software Engineer
Country flag
Wouldn't it be easier for a "hacker" to just hit the stop button on the charger?
Yes, but this lets them do it surreptitiously and laugh at the treehuggers trying to figure out what is going on with their polluting commie-mobile.
 


ZuleMME

Well-Known Member
First Name
Zule
Joined
Apr 23, 2021
Threads
10
Messages
1,018
Reaction score
1,487
Location
Denver, CO
Vehicles
21' Job1 P4X MME, 22' MYP
Occupation
Implementation Engineer
Country flag
I'd be more interested if we could trigger a session on non-working chargers with the same exploit...
 
OP
OP
GoGoGadgetMachE

GoGoGadgetMachE

Well-Known Member
First Name
Michael
Joined
Jan 23, 2020
Threads
153
Messages
5,612
Reaction score
12,669
Location
Ohio
Vehicles
2021 Mach-E 1st Ed., 2022 Lightning Platinum
Occupation
Professional forum cheerleader and fanboy
Country flag
Wouldn't it be easier for a "hacker" to just hit the stop button on the charger?
sure. the story says not to panic or anything. right now it's more of an interesting thing although I could see a nefarious person doing something like targeting this at a police charging area, where the cars are in a patrolled, gated area (so walking up to the charger or car to push a button isn't an option), to make life difficult. it's still just nuisance stuff though.
Sponsored

 
 







Top