Security researchers found severe vulnerabilities in Kia's dealer portal, which could allow hackers to track and steal Kia cars made after 2013 using only the license plate.
The Kia vulnerabilities, discovered in June 2024, could let hackers control a car in under 30 seconds without a Kia Connect subscription.
Researchers built a tool demonstrating how quickly and easily these vulnerabilities could be exploited, but did not release it publicly.
Despite the potential for abuse, these vulnerabilities were patched by Kia and not exploited maliciously, as validated by the security team.
https://www.bleepingcomputer.com/news...
Follow me:
Mastodon: https://infosec.exchange/@skickar
Thanks to our sponsor Varonis ⬇️
LinkedIn: / varonis
Visit our website: https://www.varonis.com