3 ms·
This is only the tip of the iceberg as far as this kind of thing is concerned (this kind of thing being people relying on software to keep them and their belong
by just2n 13y ago
This is only the tip of the iceberg as far as this kind of thing is concerned (this kind of thing being people relying on software to keep them and their belongings safe).
With peoples' lives at risk and with cars representing huge investments for many people, it's probably about time to get regulation that requires the software systems that are interacting with vehicles to be open to experts at large.
The same goes for things like in-home security software.
The competition should not be in the critical software. That much needs to be standard. The competition should be around fluff, construction quality, body design, brand, perks, horsepower, etc.
How is this kind of thing handled in the medical and aviation industries? How about NASA? Life-critical and safety-critical software isn't something you should hire the lowest bidder to create, nor is it something that should be hidden away in the belief that "obscurity is (the best, and the only) security."
- lisper 13y ago> How is this kind of thing handled in the medical and aviation industries? You need government approval (FDA or FAA respectively) to bring a product to market. Are you sure you want that kind of bureaucratic overhead (and the associated politics) in your car and home alarm?
- just2n 13y agoI don't think "government" means "good engineering", I think that it should be thoroughly vetted by sufficient expertise. I'm not sure if the FDA or FAA are capable of doing that, given how the government is really, really bad at building or contracting software (in general). If only we could have some kind of standardized software to power these devices that is built by the community at large and thoroughly reviewed for correctness. Even at the cost of limiting hardware, I think that's an option.
- awor 13y agoIt'd be neat if they could come to some sort of a standard on this so that its an open, reviewable piece of software that handles the crypto side of things and then passes that off and they (the Automakers) can "customize" the rest of the software all they want. Somewhat (but also not at all) like a more advanced ODBII[0] [0]http://en.wikipedia.org/wiki/On-board_diagnostics#OBD-II http://en.wikipedia.org/wiki/On-board_diagnostics#OBD-II
- baddox 13y ago> The competition should not be in the critical software. That much needs to be standard. The competition should be around fluff, construction quality, body design, brand, perks, horsepower, etc. Could you explain your reasoning for this claim? Does competition lead to better/more efficient products, or doesn't it? Why do you desire to leave non-critical parts to competitive forces, but not the critical parts?
- just2n 13y agoIt doesn't because 99% of people are entirely and completely ignorant of these systems and their importance. And no amount of discussion or even car theft is going to put it in terms that they understand. Here the news item is "with a black box that nobody understands." That wording is HORRIBLE for HN. Because it makes it sound like it's black magic and this group has found some genie that opens cars. Instead, it's more likely a simple exploit of a very vulnerable system. But that wording gives you a glimpse into how most people see technology. It's just magic. Their cares about how software works are nonexistent enough. There's no reference for "good" vs "bad" crypto, insecure design, etc. Until we have a car that kills 500 people because of faulty software, it's just not that important to people, which means there's no pressure in industry to get it right. People understand "my car will kill me if X isn't good." That's why people understand getting their tires rotated and replaced. That's why they understand to get checkups and to replace belts, filters, oil, etc. That's why they understand you need to replace your brake pads and other such hardware, even if it feels a little expensive. But when you point out that very few people have ever even been injured by bad software in a car, they think "well it can't be that bad." And "good enough", especially in a market like the US where mediocre is what sells the most, is where the market stops innovating. I hope a company like Tesla is a little more concerned with the quality, though. Maybe we can get a decent example of how to do things.
- baddox 13y ago> Until we have a car that kills 500 people because of faulty software, it's just not that important to people, which means there's no pressure in industry to get it right. I agree with that. But what is your alternate proposal, and where does the pressure to get it right come from in your proposal?
- herbertwest 13y agoI'm surprised that it's taking so long for these kind of stories to hit the news. Here's a paper from three years ago describing some disturbing attack vectors on a modern automobile: http://www.autosec.org/pubs/cars-usenixsec2011.pdf http://www.autosec.org/pubs/cars-usenixsec2011.pdf
- ge0rg 13y agoWhile I agree with your general point of making car security openly auditable, I think the best short-term approach to fix this is via insurance companies. They have a direct financial loss from badly designed car locks, and probably sufficient power to issue direct pressure to the car makers as well as indirect pressure to car owners through astronomical insurance rates.
- tokenadult 13y agoHow is this kind of thing handled in the medical and aviation industries? Since you ask, I'll draw on what I've learned from my childhood best friend (an electrical engineer who worked first in the aviation industry and now in the medical device industry) and my son (who was a summer intern for a medical device company). Simply put, safety-critical devices are heavily regulated in those industries, and everything new is assumed to be safety-critical by default. My son's summer work designing the doctor-facing user interface of a new bedside patient monitor was subject to a line-by-line code review by programmers on the FDA staff. He estimated that the product he worked on would take six years to get to market, even thought it was just version 2 of a device that already worked and had clinical usefulness. Federal government regulators try to be extra careful in review of new software that protects human lives in those industries.