Cars have government-mandated safety features, and manufacturers are forbidden from adding kill switches. Selling a car with (manufacturer-sanctioned) root access would be legally the same as including a kill switch letting the owner disable safety features.
If an owner cuts their brake light wires to flee the cops, it's 100% on them. If a manufacturer included a switch for it, they'd be in massive trouble.
Unless it's mandated by law that there must be anti-circumvention features (components checking system integrity, DRM-like), which root access would actually contradict. But that'd be completely different from prohibition to introduce a kill switch. That'd be a legal requirement that a vehicle or some of its parts mustn't be user-serviceable.
Root access is not a way to break stuff, even though it can be (ab)used as such - it's most certainly not its primary use case. It's a maintenance feature, enabling rightful owner to be able to diagnose, maintain and enhance their own vehicle's software without resorting to hacks. I'm sure that most people would use that to tweak their multimedia console (like adding CarPlay support) or get more diagnostic info about some failure they're facing, not hack their engine control module in some illegal way.
NHTSA forced Tesla to do a recall because the in-car computer allowed the owner to play custom audio on top of ("obscuring") the pedestrian warning tone.[0] If the in-car computer allowed them root access, NHTSA would have an aneurysm.
> as long as manufacturer doesn't provide a script or otherwise encourages you to `kill -9 safetyprocess` or something.
Doesn't matter.Scripts will be circulating online within days. If Tesla doesn't stop it, now they're knowingly complicit. Headlines will feature sympathetic low-knowledge users who followed directions, reasoning that it's safe because "why would Tesla let me do it otherwise??" Fin.
--
A rooted car is a nice dream, but it's just a dream. We'll never be allowed to sell a (fully) rooted car, just like we can't sell a fully-rooted (w baseband) phone. The Wild West is over folks! Last round's on me... :)
If we're very lucky, some manufacturer might give root access to a (heavily firewalled / air-gapped) media computer.
[0] https://static.nhtsa.gov/odi/rcl/2022/RCONL-22V235-2686.pdf
However it goes without saying if users could play a tone of their choice in addition to the required noise, no one could have objected to it.
The vehicle effectively became non compliant to one[1] of the fmvss rules
[1]https://www.regulations.gov/document/NHTSA-2016-0125-0001
I know the vehicle data recorder, and I've heard that LTE radios have to report occupancy, though I can't find a requirement that cars need an LTE radio.
There's rumors cars will be mandated to support remote deactivation, but the story is unclear: https://www.usatoday.com/story/news/factcheck/2023/01/19/fac...
relevant: https://consumerwatchdog.org/sites/default/files/2019-07/KIL...
...although I expect that to actually be a law once self driving is figured out and widespread
Is this a tactic that people use to evade police? I can't really think of how this would be advantageous.
On top of that, root won't give you _a lot of access_ to the car AFAIK. Some specific features are gated under some specific operations that require a sequence to unlock the gateway. If you also add to the mix the secure boot, it might be hard to do persistent harm other than what the infotainment usually does - you can't flash the autopilot system nor you can interfere with the basic driving functions (?). I'd be happy to be proven wrong though.
If they would, they wouldn't have to pay Tesla for the SW extras, and just sideload them for free later.