this post was submitted on 05 Nov 2025
266 points (97.5% liked)

Cybersecurity

8626 readers
19 users here now

c/cybersecurity is a community centered on the cybersecurity and information security profession. You can come here to discuss news, post something interesting, or just chat with others.

THE RULES

Instance Rules

Community Rules

If you ask someone to hack your "friends" socials you're just going to get banned so don't do that.

Learn about hacking

Hack the Box

Try Hack Me

Pico Capture the flag

Other security-related communities !databreaches@lemmy.zip !netsec@lemmy.world !securitynews@infosec.pub !cybersecurity@infosec.pub !pulse_of_truth@infosec.pub

Notable mention to !cybersecuritymemes@lemmy.world

founded 2 years ago
MODERATORS
 

different source (Danish)

It's no surprise, as kill switches are pretty much ubiquitous.

you are viewing a single comment's thread
view the rest of the comments
[–] yetAnotherUser@discuss.tchncs.de 9 points 2 weeks ago (1 children)

There's a difference between consensual OTA updates (meaning the bus company would manually need to confirm the update) and non-consensual OTA updates (meaning it is done regardless of the bus company's wishes).

The Chinese buses are capable of the latter which is a gigantic security vulnerability. You do not want any operating system anywhere to update itself without consent.

[–] Alcoholicorn@mander.xyz 1 points 2 weeks ago (1 children)

Does Iveco(41%) or any other manufacturer with a meaningful market share do that?

[–] stray@pawb.social 3 points 2 weeks ago (1 children)
[–] Alcoholicorn@mander.xyz 1 points 2 weeks ago

Operators of the chinese bus can pull the SIM card and reinsert it as desired as mentioned in the article, I'm not sure there is a meaningful difference if that is how the Iveco works.