Grand Cherokee in the media - Page 17 - Jeep Garage - Jeep Forum

Go Back   Jeep Garage - Jeep Forum > Jeep Platform Discussion > Grand Cherokee - WK2 - > Export Grand Cherokee 2011+

Join Jeep Garage Today
Reply
 
Thread Tools Display Modes
 
  #193  
Old 07-22-2015, 02:10 AM
Member
 
Join Date: Nov 2014
Posts: 209
Thanks: 48
Thanked 37 Times in 30 Posts
Rep Power: 968
SnakeDoctor is on a distinguished road
Re: Grand Cherokee in the media

Quote:
Originally Posted by Benn0 View Post
Interestingly, they say this exploit would apply to any uconnect car, Vipers, Chargers, Challengers, Ram pickups, etc. And the other bit that I don't think Chrysler is addressing is that you can scan Sprint IP Address ranges to get uconnect information such as "GPS coordinates, along with a vehicle identification number, make, model, and IP address"
They would need to resolve what I listed as key problems 1 and 2 here, significant changes, but doable.

Anything they do to this information (user pass, source based, hand shake etc) can be worked around with the right access, like the car and the network being public.

__________________
MY2015 Jeep Grand Cherokee 3.0 CRD. Mopar underbody, Mopar Rock Rails, Chief front plate+hooks, CRDSTU Lift
Reply With Quote
Sponsored Links
Advertisement
 
  #194  
Old 07-22-2015, 03:07 AM
Premium Member
My Jeep: 2014 3.0L WK2
 
Join Date: Feb 2013
Location: NSW Australia
Posts: 1,410
Thanks: 244
Thanked 263 Times in 201 Posts
Rep Power: 3532
SJandL has a reputation beyond reputeSJandL has a reputation beyond reputeSJandL has a reputation beyond reputeSJandL has a reputation beyond reputeSJandL has a reputation beyond reputeSJandL has a reputation beyond reputeSJandL has a reputation beyond reputeSJandL has a reputation beyond reputeSJandL has a reputation beyond reputeSJandL has a reputation beyond reputeSJandL has a reputation beyond repute
Re: Grand Cherokee in the media

Quote:
Nevertheless, motoring.com.au has spoken to several Jeep owners in Australia who are currently updating their Uconnect software.
No, tell me not. Now they're just making this stuff up. Updating to what...?



From here:

Jeep hack exposes car security threat - motoring.com.au
__________________
'07 WK Limited 5.7 Hemi (Sold)
'14 WK2 Overland CRD - ORAII
'15 KL Limited CRD - ADII, Tech Group, Electronics Group and Pano.
Reply With Quote
  #195  
Old 07-22-2015, 07:23 AM
Hutch801's Avatar
Member
My Jeep: 2014 3.0L WK2
 
Join Date: Aug 2014
Location: Brisbane, QLD
Posts: 822
Thanks: 120
Thanked 137 Times in 113 Posts
Rep Power: 17332
Hutch801 has a reputation beyond reputeHutch801 has a reputation beyond reputeHutch801 has a reputation beyond reputeHutch801 has a reputation beyond reputeHutch801 has a reputation beyond reputeHutch801 has a reputation beyond reputeHutch801 has a reputation beyond reputeHutch801 has a reputation beyond reputeHutch801 has a reputation beyond reputeHutch801 has a reputation beyond reputeHutch801 has a reputation beyond repute
Garage
Re: Grand Cherokee in the media

Quote:
Originally Posted by Benn0 View Post
Yep, I'm waiting for the jeep haters to start posting this one up.....

Been going on all day..... Nothing like some media hype.


Hutch- 2014 GC Blackhawk CRD...Feel the Power...
__________________
Hutch: 2014 Grand Cherokee Blackhawk in Black of Course.....CRD Feel the Power..
Reply With Quote
  #196  
Old 07-22-2015, 07:42 AM
67HR's Avatar
Member
My Jeep: 2014 3.0L WK2
 
Join Date: Dec 2014
Location: Albany Western Australia
Posts: 287
Thanks: 116
Thanked 35 Times in 34 Posts
Rep Power: 1014
67HR is on a distinguished road
Re: Grand Cherokee in the media

Was on 7 news tonight. Same old sensationalism, never mentioned it was a FCA sponsored hack.
__________________
Other Rides:
1967 Holden HR Ute (second owner)
2012 Gen5 Subaru Liberty Sports Premium
“When I die, I want to go peacefully like my Grandfather. Not screaming & yelling like the kids on his bus.”
Reply With Quote
  #197  
Old 07-22-2015, 08:56 AM
ENFORCER's Avatar
Premium Member
My Jeep: 2014 6.4L WK2
 
Join Date: May 2011
Location: Sydney, Australia
Posts: 2,184
Thanks: 29
Thanked 139 Times in 112 Posts
Rep Power: 322995
ENFORCER has a reputation beyond reputeENFORCER has a reputation beyond reputeENFORCER has a reputation beyond reputeENFORCER has a reputation beyond reputeENFORCER has a reputation beyond reputeENFORCER has a reputation beyond reputeENFORCER has a reputation beyond reputeENFORCER has a reputation beyond reputeENFORCER has a reputation beyond reputeENFORCER has a reputation beyond reputeENFORCER has a reputation beyond repute
Re: Grand Cherokee in the media

Now we should get them onto cracking the ECU so we can have fully custom tunes.
That would put their talents to good use.
__________________
Previous Ride = 2011 JGC CRD Overland
Current Ride = 2014 Silver JGC SRT with Pano, HK and Spider monkeys.
Mods = CLSTech Ribbon Mod

Best 1/4 13.4@102Mph
Reply With Quote
  #198  
Old 07-22-2015, 10:24 AM
Bigskiddy's Avatar
Member
My Jeep: 2014 3.0L WK2
 
Join Date: May 2013
Location: Sydney - Australia
Posts: 654
Thanks: 99
Thanked 114 Times in 84 Posts
Rep Power: 1962
Bigskiddy is on a distinguished road
Yeah. Might be able to get that remote start to finally work.
Reply With Quote
  #199  
Old 07-22-2015, 07:11 PM
Benn0's Avatar
Senior Member
 
Join Date: Oct 2013
Location: Brisbane, Australia
Posts: 2,061
Thanks: 100
Thanked 326 Times in 255 Posts
Rep Power: 18657
Benn0 has a reputation beyond reputeBenn0 has a reputation beyond reputeBenn0 has a reputation beyond reputeBenn0 has a reputation beyond reputeBenn0 has a reputation beyond reputeBenn0 has a reputation beyond reputeBenn0 has a reputation beyond reputeBenn0 has a reputation beyond reputeBenn0 has a reputation beyond reputeBenn0 has a reputation beyond reputeBenn0 has a reputation beyond repute
Garage
Re: Grand Cherokee in the media

Quote:
Originally Posted by SnakeDoctor View Post
They would need to resolve what I listed as key problems 1 and 2 here, significant changes, but doable.

Anything they do to this information (user pass, source based, hand shake etc) can be worked around with the right access, like the car and the network being public.
Its an interesting one, my first thought was that it should be treated like a phone or a PC, improve the security and it will be very difficult to hack. But the risk here is the safety issue, a hacked phone isn't as dangerous as a hacked car. So from a public safety point of view there should probably be some regulation here. Not allowing access to the CAN bus might be enough, but then you will probably lose some features like remote door locks and remote start.

I'm not sure how you would set this up as a private network, you need the cellular network to provide coverage. And one of the features of the uconnect system (in the US) is wifi hotspot, so you would need public internet access, and you are providing access to other devices to the uconnect wifi system.

Certainly needs a lot more thought. Phone manufactures and PC/Server OS developers have had a lot of experience with developing better security, car manufacturers are just learning, I guess they will catch up.
__________________
MY14 Grand Cherokee LTD CRD - ORA2 & QL | Mopar 18" Night Fever Rims & Rock Rails | Chief Recovery Hooks & Sump Skid Plate | STMaxx 275/65R18
Reply With Quote
  #200  
Old 07-22-2015, 07:48 PM
GMWK2's Avatar
Senior Member
 
Join Date: May 2012
Location: Sydney
Posts: 1,509
Thanks: 98
Thanked 186 Times in 154 Posts
Rep Power: 3244
GMWK2 has a reputation beyond reputeGMWK2 has a reputation beyond reputeGMWK2 has a reputation beyond reputeGMWK2 has a reputation beyond repute
Re: Grand Cherokee in the media

Fiat-Chrysler boss quits

Another head rolls.
__________________
Current : 2015 Overland CRD Brilliant Black, Cooper AT3 on 2012 Laredo rims, FULL size alloy spare, Chief bash plate and recovery point.
Past and now sold : 2012 Mineral Grey CRD Laredo, Off Road Adventure II, Quadra Drive II, Quadra Lift, Only driven to church on Sundays
Other cars : Alfa '04 GT, Alfa '07 159 Q4
Reply With Quote
  #201  
Old 07-22-2015, 08:07 PM
Member
 
Join Date: Nov 2014
Posts: 209
Thanks: 48
Thanked 37 Times in 30 Posts
Rep Power: 968
SnakeDoctor is on a distinguished road
Re: Grand Cherokee in the media

Quote:
Originally Posted by Benn0 View Post
I'm not sure how you would set this up as a private network, you need the cellular network to provide coverage. And one of the features of the uconnect system (in the US) is wifi hotspot, so you would need public internet access, and you are providing access to other devices to the uconnect wifi system.
Using Telstra for example, you can have a fully private network over 3G/4G using what they call a private APN, (seen a mobile EFTPOS terminal? They use one of these.) Once you have one of these setup for you, you can also utilise a username/password to control access.

It's not possible for someone to connect to this APN unless it's been added onto their service by the provider (Telstra) which they have systems / business rules controlling. You need to manually configure it on the mobile device too.

The service provider can also configure other security measures in this case, like no phone/device to phone/device direct communications. Not really rocket science or new technology, first one I setup was more than 10 years ago, even Australian government punters with their smart electricity meters manage to get it right, no excuses for Chrysler.

Internet access is simple and controllable via this too, you just proxy (or route) via Chrysler network, such that the hackers would actually need to hack Chryslers own network (which should have its own logical seperation) to access the cars.


Quote:
Originally Posted by Benn0 View Post
Certainly needs a lot more thought. Phone manufactures and PC/Server OS developers have had a lot of experience with developing better security, car manufacturers are just learning, I guess they will catch up.
Tesla is a much smaller company and the Model S is Internet connected and receives over the air updates and full car remote control via secure methods (some of which I described) from their network, Chrysler (or whoever they outsourced this too) just dropped the ball on this one.
__________________
MY2015 Jeep Grand Cherokee 3.0 CRD. Mopar underbody, Mopar Rock Rails, Chief front plate+hooks, CRDSTU Lift
Reply With Quote
  #202  
Old 07-22-2015, 08:20 PM
Benn0's Avatar
Senior Member
 
Join Date: Oct 2013
Location: Brisbane, Australia
Posts: 2,061
Thanks: 100
Thanked 326 Times in 255 Posts
Rep Power: 18657
Benn0 has a reputation beyond reputeBenn0 has a reputation beyond reputeBenn0 has a reputation beyond reputeBenn0 has a reputation beyond reputeBenn0 has a reputation beyond reputeBenn0 has a reputation beyond reputeBenn0 has a reputation beyond reputeBenn0 has a reputation beyond reputeBenn0 has a reputation beyond reputeBenn0 has a reputation beyond reputeBenn0 has a reputation beyond repute
Garage
Re: Grand Cherokee in the media

Quote:
Originally Posted by SnakeDoctor View Post
Using Telstra for example, you can have a fully private network over 3G/4G using what they call a private APN, (seen a mobile EFTPOS terminal? They use one of these.) Once you have one of these setup for you, you can also utilise a username/password to control access.
Ok, I hadn't heard of that before, but it works like a VPN for mobile devices?


Quote:
Originally Posted by SnakeDoctor View Post
Tesla is a much smaller company and the Model S is Internet connected and receives over the air updates and full car remote control via secure methods (some of which I described) from their network, Chrysler (or whoever they outsourced this too) just dropped the ball on this one.
Yeah, but the cultures of the companies would be different. The Chryslers, Fords and GMs don't have that background in software development and haven't learnt those lessons. Newer companies making electric cars probably employ people who have had that exposure. The old car makers are going through the same growing pains that Microsoft has had to go through with regards to security on open networks.
__________________
MY14 Grand Cherokee LTD CRD - ORA2 & QL | Mopar 18" Night Fever Rims & Rock Rails | Chief Recovery Hooks & Sump Skid Plate | STMaxx 275/65R18
Reply With Quote
  #203  
Old 07-28-2015, 07:10 PM
GMWK2's Avatar
Senior Member
 
Join Date: May 2012
Location: Sydney
Posts: 1,509
Thanks: 98
Thanked 186 Times in 154 Posts
Rep Power: 3244
GMWK2 has a reputation beyond reputeGMWK2 has a reputation beyond reputeGMWK2 has a reputation beyond reputeGMWK2 has a reputation beyond repute
Re: Grand Cherokee in the media

Ho Hum...
Fiat Chrysler slammed by US government – Car Reviews, News & Advice - CarPoint Australia..
__________________
Current : 2015 Overland CRD Brilliant Black, Cooper AT3 on 2012 Laredo rims, FULL size alloy spare, Chief bash plate and recovery point.
Past and now sold : 2012 Mineral Grey CRD Laredo, Off Road Adventure II, Quadra Drive II, Quadra Lift, Only driven to church on Sundays
Other cars : Alfa '04 GT, Alfa '07 159 Q4
Reply With Quote
  #204  
Old 07-28-2015, 07:42 PM
67HR's Avatar
Member
My Jeep: 2014 3.0L WK2
 
Join Date: Dec 2014
Location: Albany Western Australia
Posts: 287
Thanks: 116
Thanked 35 Times in 34 Posts
Rep Power: 1014
67HR is on a distinguished road
Re: Grand Cherokee in the media

Nor this one: Recalls hurting Grand Cherokee sales, admits Jeep – Car Reviews, News & Advice - CarPoint Australia

Something deep down we don't want to here, personally I've had a great experience and i'm loving my GC.
__________________
Other Rides:
1967 Holden HR Ute (second owner)
2012 Gen5 Subaru Liberty Sports Premium
“When I die, I want to go peacefully like my Grandfather. Not screaming & yelling like the kids on his bus.”
Reply With Quote
Reply

Tags
grand cherokee

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
2014 Grand Cherokee Media Apps? ChrisUCF99 Audio/Visual/Navigation 10 03-23-2013 05:51 PM
Grand Cherokee MY2012 Limited Tech - 3.0 TD :: 2012 Jeep Grand Cherokee 3.0 Turbodies Fulvio75 Member Garage Discussions 0 02-27-2013 04:46 AM
The wife's Grand Cherokee :: 2013 Jeep Grand Cherokee Laredo X 4X4 jpcjf Member Garage Discussions 0 12-28-2012 09:12 PM
Media Center 130 (RES+RSC) to Media Center 430N (RHB) stroh Audio/Visual/Navigation 5 01-12-2012 10:27 PM

Powered by vBadvanced CMPS v3.2.3

All times are GMT -5. The time now is 08:35 PM.


Powered by vBulletin® Version 3.8.8 Beta 4
Copyright ©2000 - 2016, vBulletin Solutions, Inc.
Copyright 2012 - JeepGarage.Org
The Jeep Grand Cherokee Owners Community

JeepGarage.org is in no way associated with or endorsed by FCA US LLC. Chrysler, Dodge, Jeep, Ram, Mopar and SRT are registered trademarks of FCA US LLC.