Search

Skoda and Volkswagen Cars May Be Susceptible to Hacking Due to Infotainment System Vulnerabilities

Skoda Superb's infotainment system may allow malicious actors unrestricted code execution access.

Advertisement
Highlights
  • Researchers discover vulnerabilities in the Skoda infotainment systems
  • It may allow remote code execution and vehicle location tracking
  • Skoda claims vulnerabilities have been addressed and eliminated
Skoda and Volkswagen Cars May Be Susceptible to Hacking Due to Infotainment System Vulnerabilities

Skoda Superb III is reported to be one of the models impact by the vulnerabilities

Photo Credit: Skoda

Security researchers have discovered vulnerabilities of low-to-medium criticality in select Skoda and Volkswagen cars that may enable malicious actors to trigger certain controls, a cybersecurity firm announced at the Black Hat Europe 2024 event this week. At least 12 new vulnerabilities were found impacting the infotainment systems in the latest model of Skoda Superb III — a D-segment sedan manufactured by the Volkswagen Group which entered production in 2015. Although threat actors would need to connect to the vehicle via Bluetooth to get access, the attack may be carried even from a distance.

This builds upon the previous discovery of nine security flaws in the same vehicle that were reported last year.

Vulnerabilities in Skoda Cars

Cybersecurity firm PCAutomotive published a report detailing the vulnerabilities discovered in the third-generation model of Skoda Superb. The German sedan's MIB3 infotainment system may allow malicious actors unrestricted code execution access, enabling them to run malicious code upon startup. It is said to provide remote access to the vehicle's systems.

They may be able to track its speed and location in real time, eavesdrop on the in-car microphone, play sounds, and control its infotainment system. Another flaw may allow them exfiltrate the phone contact database if contact synchronisation with the phone is enabled. Further, the vulnerabilities could also allow access to the CAN bus which is used to connect with the vehicle's electronic control units (ECUs).

Although there are many suppliers of the MIB3 infotainment system, the researchers specifically talk about the one manufactured by Preh Car Connect Gmbh. It impacts the following models:

  1. Skoda Superb III
  2. Skoda Karoq
  3. Skoda Kodiaq
  4. VW Areteon
  5. VW Tiguan
  6. VW Passat
  7. VW T-Roc
  8. VW T-Cross
  9. VW Polo
  10. VW Golf

The sales data suggests that a total of 1.4 million vehicles from the Volkswagen Group are at risk. PCAutomotive reported the vulnerabilities to Skoda as part of its cybersecurity disclosure program. In a statement given to TechCrunch, Skoda revealed that they have been addressed and eliminated. “At no time was and is there any danger to the safety of our customers or our vehicles”, the German automotive company said.

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

 
Show Full Article
Please wait...
Advertisement

Related Stories

Popular Mobile Brands
  1. OnePlus 13T Display, Battery Details Tipped; Could Launch in April
  2. Motorola Edge 60 Fusion Design Renders Surface Online Again
  3. iQOO Z10 Showcased in Two Colourways
  4. Lava Shark With 50-Megapixel Camera, 5,000mAh Battery Launched in India
  1. Assassin's Creed Shadows Said to Be Series' Second Biggest Launch Ever
  2. Samsung Galaxy S26 Ultra With Three Rear Cameras, Larger Battery Reportedly Under Testing
  3. Vivo Vision Mixed Reality Headset Unveiled China; Bears Striking Resemblance to Apple Vision Pro
  4. Vivo X Fold 4 May Launch in Q3 2025; Key Features Surface Online Again
  5. TRN Odyssey Programme Goes Live, Opens Funding Opportunities for Web3 Game Developers
  6. ADGM, Chainlink Sign MoU to Explore Compliant Tokenisation Rules, Cross-Chain Interoperability
  7. Samsung Ordered to Pay $601 Million in Back Taxes in India, Penalties Over Telecom Imports
  8. Optoma UHC70LV 4K UHD Projector With 5,000 Lumen Brightness, Dolby Vision Support Launched in India
  9. Swiggy Instamart Launches 10-Minute Smartphone Delivery Service in Select Indian Cities
  10. Government Ends Import Duty for Items Needed to Make EV Batteries, Phones
Gadgets 360 is available in
Download Our Apps
App Store App Store
Available in Hindi
App Store
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.
Trending Products »
Latest Tech News »