Remix.run Logo
IshKebab 6 days ago

Kind of insane that this works... Surely whoever implemented this knew it was insecure? I honestly wouldn't have thought to check for this vulnerability because... who would do that??

dylan604 6 days ago | parent [-]

I don't think the word "secure" was ever part of the discussion on keyless entry for cars. They would have used something like "convenience". Secure would maybe be considered in that the car doors are now locked from the keyless. But as far as "secure" being used in regards to the transmission/receiving of the wireless signal? I doubt if it was ever mentioned by anyone other than PR.

IshKebab 6 days ago | parent [-]

It definitely was because they used to not even use rolling codes. Rolling codes were specifically created to prevent replay attacks, and then they somehow thought "oh but if you replay two keys we'll accept them". Insane. They must have just hoped nobody would even think to try that because it's so ludicrous.