Sponsored

Potential Hacking into your Ford Bronco

Los

Wildtrak
Well-Known Member
Joined
Jun 10, 2021
Threads
1
Messages
220
Reaction score
148
Location
California
Vehicle(s)
Disco3
Your Bronco Model
Wildtrak
Greetings everyone,
So I was reading, how hackers are accessing, just about every new vehicle that's connected to the various apps that we like to use. (WI FI)

I just copied what is relevant to Fords and pasting on our forum. So here it goes.

Ford
(Full memory disclosure on production vehicle Telematics API discloses
Discloses customer PII and access tokens for tracking and executing commands on vehicles
Discloses configuration credentials used for internal services related to Telematics
Ability to authenticate into customer account and access all PII and perform actions against vehicles
Customer account takeover via improper URL parsing, allows an attacker to completely access victim account including vehicle portal).

So I wonder if FORD has a plan to protect us customers from becoming victims, do they have software protection, you know like PC's have anti virus and anti hacking software.
Sponsored

 

Ogre

Black Diamond
Well-Known Member
First Name
James
Joined
Nov 3, 2022
Threads
7
Messages
430
Reaction score
403
Location
Texas
Vehicle(s)
'23 BD 2dr 7MT CG, '18 Indian Chieftain
Your Bronco Model
Black Diamond
I think the biggest risk here is people using unverified/ 3rd party apps or trying to connect their bronco to public wifi. Use it as is intended, music and maps, and you'll be fine.
 

nothingface

Outer Banks
Member
Joined
Aug 7, 2022
Threads
0
Messages
12
Reaction score
14
Location
N Virginia
Vehicle(s)
2dr OBX Bronco, Range Rover Sport, CBR600RR
Your Bronco Model
Outer Banks
Sounds like a similar or the same article I recently saw. It was light on the details, so unclear exactly how much of a threat it really is. Could be terrible, could be no big deal.

Also of note, my impression was that the attack was on the API to Ford's servers, using the mechanism that the Fordpass app uses. I do not believe it was a direct attack on on the vehicle. In which case, there's nothing a vehicle owner can do about this other than disable the modem, or better yet, simply pull the fuse to the modem. Been thinking about hardwiring a modem kill switch for this very reason.
 

Scott R Nelson

Base
Well-Known Member
Joined
Sep 30, 2020
Threads
32
Messages
989
Reaction score
1,643
Location
Meridian, ID
Vehicle(s)
Mustang, Escape, 2-door Base Sasquatch
Your Bronco Model
Base
Clubs
 
So I wonder if FORD has a plan to protect us customers from becoming victims, do they have software protection, you know like PC's have anti virus and anti hacking software.
You can protect yourself by turning it off. I did that with mine. I didn't want it updating software without my approval, and didn't want the possibility for someone else accessing something remotely. Yes, I had to give up remote start from the Ford Pass App, but that's a minor thing.
 
  • Like
Reactions: Los

Sponsored

MayhemMike

Badlands
Well-Known Member
Joined
Mar 22, 2021
Threads
16
Messages
2,744
Reaction score
7,665
Location
Virginia
Vehicle(s)
Mercury
Your Bronco Model
Badlands
It is things such as this that make it good to be a ignorant tech geezer.
 

Stick in the Mud

Banned
Badlands
Banned
Banned
Joined
Jan 3, 2023
Threads
14
Messages
197
Reaction score
257
Location
Saco, ME
Vehicle(s)
2023 Bronco Badlands
Your Bronco Model
Badlands
If you’re that worried, do a master reset and don’t turn on ford pass. Or if you’re super paranoid, unplug the modem.
Sponsored

 
 


Top