Police admit they're 'stumped' by mystery car thefts
today.com
today.com
http://content.usatoday.com/communities/driveon/post/2011/01...
http://www.schneier.com/blog/archives/2012/07/hacking_bmws_r...
http://reviews.cnet.com/8301-13746_7-20085131-48/remote-unlo...
http://news.consumerreports.org/cars/2011/03/researchers-car...
Here's a video (with no commentary, unfortunately) that shows someone who has apparently decoded the signals from a car remote and is using the remote and an arduino, to toggle some LEDs:
http://www.youtube.com/watch?v=doELL4g4cS0
I have little doubt that there are hackers out there who can easily build a device to remotely unlock / start cars that use keyless entry. In fact, I'd be far more surprised if there weren't.
Edit: to elaborate... when I say "What's the big mystery" I'm referring to a notion, which I interpreted from the article (rightly or wrongly), that people are totally unaware that this kind of thing is even conceptually possible. I don't claim to know the exact exploit or mechanism being used here! Just pointing out that this general class of attacks isn't something totally foreign and unknown.
American media at it's best!
http://ir.atmel.com/releasedetail.cfm?ReleaseID=665225
Where Atmel announced a new transponder chip & microcontroller, which do, indeed, use 128-bit AES. This is from 2012 though, so I'm not sure how widely adopted this particular chip is, or if other, older chips are in widespread use that are 128-bit AES.
But even if everybody is using 128-bit AES, all that means is that the actual encryption itself is probably essentially unbreakable. But, as well all know, cryptographic systems are more than just the raw crypto algorithm. All sorts of systems which use crypto are eventually found to be insecure, so this whole thing should still come as little surprise (well, to people like us anyway. To the average cop, maybe this all sounds like black magic).
I agree with you that this crypto system failure, not an algorithm exploit.
A make of USB drive enclosure that claimed to be using AES 128 bit encryption, but it turns out that wasn't for the data.
In other words, the superlatives don't match the reality.
How many times do we have to go over this? Crypto is hard to do right.
ECB: http://en.wikipedia.org/wiki/Block_cipher_modes_of_operation...
The larger point here is that most keys probably aren't using AES to start with, and there's probably some other vulnerability in the overall system.
I'm sure there are vulnerabilities all over the place, but it would make even more sense if it happened to an AES system, because people would let their guard down because super-duper industrial strength encryption will take care of everything.
I didn't mean using it was brain dead, i mean using it without knowing the implications might lead to (accidentally) using it in in a brain dead way. For example, I could see them implementing the protocol and testing it without crypto and then simply adding crypto on top of it without thinking about the crypto portion.
This is the worst possible design, and not far from what late 90's cars use. Even though it is the dumbest possible solution it still works reasonably well, because you have to have access to the key to start the car. You can clone the key in a second, but you still must get within inches of the key.
For example your hypothetical protocol is grossly insecure. Keys transmit signals over dozens of feet, not inches. All an attacker would have to do to attack your hypothetical protocol would be to capture one exchange. Then he can XOR the challenge with the response to obtain the 32-bit secret, allowing him to clone the key!
I was under the assumption that we are talking about proximity keys. Old ignition keys use RFID, but a broken encryption system. They are still secure because the range is a few inches. Newer cars with unlock from the pocket / push to start, use challenge based auth and strong encryption.
Click to unlock fobs use secure PRNGs. That is a separate discussion, and they are generally secure. Maybe this is what the reporter was talking about, but I assumed these cars had proximity keys. Even if this is what the reporter was talking about, they were not way off base, as this still falls in the "should be impossible" category.
However, this, "and should be hackproof", is faulty. Nothing is ever inherently secure, though it might be relatively secure at a given moment and circumstance.
It's easy to characterize this as the ignorance of American media. However, this kind of "should be X" is common for anyone, be they journalists, ordinary folk, or technologists. We all have expectations about reality and feel shocked or bitterly disappointed when the expectation falls apart.
How do you know at the RF level that its challenge based, and how do you know that the exploit is not operating in some .gov override mode like "I am NSA, open right now" mode.
I used to operate a computer that had a rack mount lock where its extremely well known (to some, anyway) that the mfgr shipped every unit with a tumbler that could be opened by a key cut to "XX2247"
I could encrypt the key cutting code XX2247 for you with 128 bit AES, or maybe 2048 DSA, but its not going to help very much.
It might be buggy enough that a random out of limits response might open it.
Soooo... what to do with an extra set of keys to your buddy's car? Muwahahahaha... gaslight[1] him, of course! So me and a couple of other buddies would randomly drive to where he worked, and take his truck and do little things... change the direction it was facing, or move it about 3 spots over in the parking lot, or fiddle with the presets on his radio.
For like a month, he was spazzing out over this, while we all did our level best to keep a straight face when we were with him. He was convinced it was his brother messing with him for quite a while. Needless to say, he was a bit pissed when we finally broke down and told him and gave him his keys back. But man, what a laugh riot for a time...
Versus the amazing quality of Chinese or Russian media? Brazilian media? Romanian media? Or maybe it's the French that have outstanding journalistic integrity and never make mistakes!
I imagine it might be stupider, like maybe there's a way to induce the unlock button or motor to trigger via induction or something. Though I'm pretty poorly informed about that kind of thing scientifically and am likely completely wrong.
It's a fair point, but I don't know that I'd take that at face value. That could have just been a subjective assessment that got repeated as fact. Without us having access to the actual videos or the raw numbers, it's hard to say.
So I don't think it's clear that these thieves are using any of those techniques.
Sure, and I'm not saying it's 100% certain that this is exactly how the thieves are operating.. just pointing out that it's well known that modern cars are vulnerable... if there are additional, as yet unreported vulnerabilities, would anybody be surprised?
I imagine it might be stupider, like maybe there's a way to induce the unlock button to trigger via induction or something.
That actually strikes me as semi-reasonable, without having research the matter in any depth. Where were you on the night of January 12th, when a black Suburban was stolen ...
I don't see how you can say that is "unrelated". Even if our "mystery" thieves aren't using those exact exploits, there is NO "mystery" that hackers have demonstrated the ability to break car remote systems. But the article and the quotes from the police make it sound like the police are just staring at the wall, drooling and going "duuuhhh huhhh huhhhh... how'd they do that.. duhhuhhhh huhhhhh." Now that's probably not literally the case, but the article makes it sound like nobody has even the slightest clue that this stuff is possible, or how it's done. And that's just not true.
If TFA had given some more context, and said "exploits which would allow this type of access were shown at a recent hacker conference, and some cars have known exploitable vulnerabilities... but we don't know if this crop of thieves are using that or a newer, unpublished exploit" then it would, IMO, have been a better article. Instead, it leaves people with the idea that this whole concept (hacking cars) is something brand new, unknown, and unexpected. And it's not.
Of course, elementary school science is enough to figure out that if you bought a jar of apple juice from the store, replaced some of the contents with hot goat urine and shook it up before fully closing the lid again, as the air inside cooled it would pull the clicker back down. And you could return it to the store.
But if I read an article about mysterious tampering with "unopened" products in local grocery stores, I hope the police (and particularly, food packaging or food security experts) wouldn't be so baffled about it when discussing it with reporters.
So you have a device that can open random car doors in seconds? Do you know where to get one? Do you know anyone who has one?
The police apparently don't (and the police almost certainly know far more about crimes and how they are performed than you and most other HNers do). A guy who specializes in car electronics exploits doesn't.
So yes, this is a mystery. The counter-argument seems to be some variation of the too-common world-weary-haughtiness that spreads like an infection on HN.
Bank closes at night like always. The next morning the manager arrives and finds everything seemingly as it was, but when they look in the safe all of the money missing. Would that qualify as a mystery? Even though people have been robbing banks for centuries, even breaking into safes? Yes, of course it would, though I'm sure there'll be that guy who'll point out the obvious that somehow someone got in the safe.
No, and I haven't claimed to do so. You're just setting up straw-men and attacking them now, and I don't know for what purpose. I've already said that I was talking in terms of a general sentiment that I think I detected in TFA, and not the specifics of this batch of incidents.
You've been at this "random car" thing over the whole thread.
But there no indication that these thieves can steal random cars in the sense of any car they choose. Thieves have stolen particular cars and the cops might not know the connecting thread but there's no situation where the thieves passed a "show us a random car and we'll use our device to steal it" challenge and that would be the kind of hard evidence you'd need for a "these guys can steel any car" rhetoric.
But how about Honda -- do you have a remote door unlock exploit that can do what is being discussed on just Honda vehicles?
It's almost as if the news has some sort of agenda!
Exploits have been demonstrated by researchers, but are mostly pretty make/model specific.
Certainly, I'd bet that every car with bluetooth/wifi integrated has some sort of flaw whereby it might be possible to use that to bridge to the cars Canbus and request a door unlock. That doesn't mean that these are easily exploitable by individuals willing to commit petty theft.
While those links to may be useful to shed light on this type of crime, they do little to confirm the method that these thieves are employing. Hence, there is mystery.
This is really frustrating because clearly they've figured out something that looks really simple and whatever it is they're doing, it takes just seconds to do," Stickley said. "And you look and you go, 'That should not be possible.
Considering, again, that there has been published research on this topic, and a presentation at Black Hat, revealing that (at least some) cars are vulnerable.
Honestly, I feel like the reporter on this article should have done a bit more background research and interviewed a few more people. Not that it changes the fundamental issue (don't leave valuables in your car, etc.) but it would have been a stronger article with some more context, IMO.
What security professional worth his salt says "that should not be possible"? The entire security profession is about identifying assumptions and then challenging them. He sounds more like a software developer cashing in on the "s" word because he found a buffer overrun than a security profesional assessing an attack.
A quote from somebody like Bruce Schneier, or tptacek, would have been a lot better.
- "Don't leave valuables in the car". Really? I'd have to deal with smashed windows every single day if I left anything that could possibly be of value sitting overnight (or for a few minutes in some places). Perhaps even an empty shoe box. And that's with tinted windows so dark they are not even supposed to be street legal.
- "Keep your car registration in the wallet". Identity theft with a car registration should not be possible here, as it doesn't contain ID numbers, nor photographs and is no proof of identity (you have to display the driver's licence - which is proof of identity - and the car's documents on demand if requested by authorities). Still, it is a ridiculously bad idea to leave it sitting in a car overnight. If the car is stolen, the crooks would have a much easier time evading minor police checkpoints.
I guess some places have such a low crime rate that people just forget basic security precautions?
This is happened to me in the nice parts of town that are close to public transit. They smash a few windows run across the street and jump on the train. . .
http://blog.lawinfo.com/2011/06/22/if-you-leave-your-keys-in...
Or a vindictive one, for that matter.
Yes.
I've lived most of my life within 25 miles of where I was born in the US.
Within that area there are places where your windows will be smashed for $0.74 in a cupholder and others where people don't even lock their doors.
I grew up in the former and even though I've lived in the latter for a long time I don't think I'll ever get used to it.
Essentially, with the newer cars keyless entry cars, it's the car that transmits the signal to the fob (so you can't get stranded with a flat battery).
The protocol itself is secure, but open to a MITM attack. The exploit works essentially like a WiFi booster. Perp #1 places himself near the car, receiving the car's transmission. This is relayed to perp #2, who is near the owner (and the key). The key communicates with the car (via the relay) - the door opens, the car starts, and off you go.
The level of security of a car door is presumably a lot higher than that of a garage door, but the technology of using a rolling code is the same and the need to be able to (re)synchronize remote keys/fobs is also there. With the cars I own, there is a procedure in the operator's manual on how to resync your keys. Nominally, it requires physical access - an already unlocked car.
Ref: http://www.programmingkey.com/
My first guess is that the bad guys figured out a timing attack that confuses the lock software if the "right" sequence of codes are sent with the "right" timing.
My alternate guess is that the bad guys figured out a way to mimic the resync mechanism without requiring physical access.
For example, from my Grand Prix's owner's manual:
> Each remote keyless entry transmitter is coded to prevent another transmitter from unlocking your vehicle. If a transmitter is lost or stolen, a replacement can be purchased through your GM dealer. Remember to bring any additional transmitters with you when you go to your dealer. When the dealer matches the replacement transmitter to your vehicle, any remaining transmitters must also be matched. Once your dealer has coded the new transmitter, the lost transmitter cannot unlock your vehicle. The vehicle can have a maximum of four transmitters matched to it.
And from the shop manual:
> Once the keyless entry receiver enters the programming/diagnostic mode, the programming of the first transmitter erases all previous transmitter programming information. You must then program all of the transmitters.
For instance, instead of just sending "12345" and having the doors open since the code was expected, What about if the remote said "hey car, whats your random number" - the car then transmits back "54321" at which point the transmitter sends a hashed reply sha512(54321 + unique-random-id-set-per-car) which the car receives then verifies matches expected output.
The takeaway being that both the car and the remote know what "unique-random-id-set-per-car" is, but nobody else does. It should be randomly set at the factory so each car and the remotes have a unique id.
My only thoughts as to why its not like this is that the logic required to do that type of operation might not be possible without a higher wattage 'processor' in the keyfob which would eat through batteries. Im totally out of the know in that area though.
Also, unrelated- but the passenger door thing is likely just coincidence because they want to get in the glove box. But, there is another thing that could explain it. On my last car (mercedes) when I wanted to reprogram a new keyfob to work with the car, I had to do a long process of certain actions to make it work. It was like "press on brake, release brake, press on brake for 3 seconds then release, open drivers window, open passenger door, close drivers window, press open button on keyfob" So the car CPU is definitely aware and can take actions specific to which door is being opened, so its possible its related.
So, if you figure out how these are salted (VIN?) and what pseudo-random generator it uses, you can recreate the signal.
Programming a replacement remote is a simple procedure, requiring only a few moments in the vehicle with the key present... like when parking a car. Paired with an easily accessible address (registration?), you have a crime ready to take place.
This would confirm why multiple vehicles in the same driveway were targeted. Families use the same service providers. It could also make sense of why the "device" occasionally did not work. Maybe they got the remotes / addresses mixed up, the programming did not take or their mule is selling them unprogrammed remotes.
I think this is more logical of a solution considering the facts. Any thoughts?
Head back to desk, slam keys down (person behind desk had previously shown a serious attitude to renters), get startled look and say "car doesn't work". After a bit of shock due to slammed keys and firm voice person says "colleague should be there" (he wasn't), pointed out "nope", responded with "oh, in 5 minutes".
Wander back out to car, electronic lock locks/unlocks care, but still doesn't start. "Colleague" shows up. Points out diff between 8 and 9. I mention "uh, car unlocked". He shrugged. Turns out the car was in a completely different/not visible (for the company) part of the parking lot. Both electronic locks and key worked in that vehicle.
Having an electronic system for duplicate cars (1 off in license plates) seems like a bad idea.
How are keys generated? What is the source of randomness? How are keys reset if needed? What are the manufacturer/service/guvmint backdoors in the keys? etc.
What happens in the event that you loose your fob?
I always chuckle when I read something like this because if something has been made by men it can be cracked by men. It's simple as that.
https://www.google.com/search?q=car+key+duplicator+alibaba
:-)
They could have just asked any CS prof or student for the possiblities...
I have no source but I recall seeing a story where people were able to fake a BMW remote by plugging directly into the OBDII port on the cars and running a quick program on an attached arduino. As for remote access I'm sure its equally plausible to crack if you know the right steps to take.