CarThreat
  • Home
  • News
  • Features
  • Spotlight
  • Events
  • About
    • Our Mission
    • Services
    • Contact
Notification
  • Autonomous Driving
  • Automotive Ethernet
  • BMS
  • ECU
  • EV
  • ISO/SAE 21434
  • Infotainment
  • OTA Updates
  • OBD-II
  • Pwn2Own
  • RCE
  • SDVs
  • TCU
  • UNECE R155
Cybersecurity

St. Paul pulls plate reader cameras after data reached immigration agents

Policy & Compliance

China freezes vehicle software to end patch-later OTA era

Policy & Compliance

NRMA and Lexus Australia push Canberra toward car data law

Policy & Compliance

Quebec report declares car data consent fundamentally broken

Font ResizerAa
CarThreatCarThreat
  • Home
  • News
  • Features
  • Spotlight
  • Events
  • About
Search
  • Home
  • News
  • Features
  • Spotlight
  • Events
  • About
    • Our Mission
    • Services
    • Contact
Sign In Sign In
Follow US
© 2026 Carthreat.com. All right reserved.
Cybersecurity

Automotive Cyber Vulnerabilities Double Year Over Year as Attacks Get Easier

CarThreat Staff
Last updated: July 1, 2026 1:51 am
By
ctadmin
2 Min Read
SHARE

Vulnerability Surge and Lowered Barriers

A new report from PCA Cyber Security reveals a dramatic 105% year on year increase in automotive cybersecurity vulnerabilities. During the first quarter, researchers catalogued 265 new automotive CVEs, marking a 28% jump from the previous quarter. More concerning, 88% of these vulnerabilities could be exploited without specialized tools or extensive preparation, indicating that attack methods are becoming more accessible to a wider range of threat actors.

Contents
Vulnerability Surge and Lowered BarriersIn Vehicle Ethernet as Primary Attack VectorEcosystem Wide Risks and Real World Incidents

In Vehicle Ethernet as Primary Attack Vector

Among the 14 distinct entry methods identified, in vehicle Ethernet networks emerged as the dominant attack surface, accounting for 25% of all vulnerabilities tracked in the quarter. This finding is particularly significant as automakers increasingly adopt Ethernet to replace older network architectures and support connected features. Without rigorous security design and testing, this architectural shift expands the attack surface across the entire vehicle.

Ecosystem Wide Risks and Real World Incidents

The report demonstrates that automotive cyber risk extends far beyond isolated vehicle components. Vulnerabilities now span cloud services, mobile apps, support operations, and online marketplaces. Real world impacts were demonstrated by a cyberattack on a Russian telematics provider, whose compromised mobile app left owners unable to unlock doors or start engines for nearly two weeks. Another incident exposed 12.4 million user records from a major automotive marketplace through a voice phishing attack. The Pwn2Own Automotive competition further highlighted the scale of the challenge, with 73 entries uncovering zero day flaws in Tesla infotainment systems, mainstream head units, and EV chargers.

Source: SecurityBrief

Join Our Newsletter
Subscribe to our newsletter to get our newest articles instantly!
TAGGED:Automotive SecurityCVEEthernetPCA Cyber SecurityPwn2OwnTelematics
Share This Article
Facebook Email Copy Link

Follow US

Find US on Social Medias
FacebookLike
XFollow
YoutubeSubscribe

You Might Also Like

Cybersecurity

Bidirectional EV Charging Turns Connected Cars into Grid Assets

By
ctadmin
June 5, 2026
Cybersecurity

Identity-based crypto removes plaintext keys from CCS charging

By
ctadmin
August 12, 2026
Cybersecurity

Nordic Regulators Block Tesla FSD Over Speed Limit Bypass Feature

By
ctadmin
June 30, 2026
Cybersecurity

Thieves jam fleet trackers as European van thefts spike

By
ctadmin
August 19, 2026
Cybersecurity

Deterministic ECU Protection: Preventing Exploits Without Redesigning CAN Bus Communication

By
ctadmin
May 22, 2026
Cybersecurity

Tokyo Connected Car Security Seminar Tackles ECU Hardening and Autonomous Protection

By
ctadmin
May 22, 2026

CarThreat

Intelligence for the EV and automotive security market
  • News
  • Features
  • Spotlight
  • Events
  • About Carthreat
  • Our Mission
  • Services
  • Contact Us
  • OBD-II
  • Automotive Ethernet
  • TCU
  • Infotainment Systems
  • SDVs
  • BMS
  • ECU Security
  • CAN Bus
  • OTA Updates
  • Vulnerabilities
  • Relay Attacks
  • RCE
  • Threat Intelligence
  • Cybersecurity
  • Digital Keys
  • Bluetooth Security
  • ISO/SAE 21434
  • UNECE R155
  • Regulations
  • Data Privacy
  • EVs
  • Autonomous Driving
  • Pwn2Own Automotive

© 2026 Carthreat.com. All right reserved.  Privacy Policy | Legal

Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?