10th Gen Honda Civic Updates Are Signed with AOSP Test Keys
A security researcher has identified a vulnerability in the 2021 Honda Civic's headunit that allows for arbitrary code execution via a USB update. The researcher, who dubbed the exploit 'EvilValet', has released a tool to facilitate custom firmware installation.
Why it matters
This vulnerability exposes potential security risks in modern automotive software and the dangers of physical access to vehicle systems.
Three years ago, I published my initial work to understand and reverse engineer my car, specifically the headunit of my 2021 Honda Civic. 1
The article is a technical disclosure of a security vulnerability.
Get smarter about the news
Sign up free for a feed built around what you actually care about, Dive Deeper research on any story, and the full text of every article.
Create free accountAlready have an account? Sign in