Web Hackers vs. The Auto Industry: Critical Vulnerabilities in Ferrari, BMW, Rolls Royce, Porsche, and More
samcurry.net | blog | #bug-bounty | #account-takeover | #api-security | #car-hacking | #automotive-security | #vin | #mercedes-benz
Summary
Sam Curry's team found automotive API flaws across brands: VIN numbers sufficed for remote commands and account takeover at Kia, Honda and Nissan, while Mercedes-Benz SSO exposed internal systems.
- Published
- Collected
Skip to content