CarThreat
  • Home
  • News
  • Features
  • Spotlight
  • Events
  • About
    • Our Mission
    • Services
    • Contact
Notification
  • Autonomous Driving
  • Automotive Ethernet
  • BMS
  • ECU
  • EV
  • ISO/SAE 21434
  • Infotainment
  • OTA Updates
  • OBD-II
  • Pwn2Own
  • RCE
  • SDVs
  • TCU
  • UNECE R155
Cybersecurity

St. Paul pulls plate reader cameras after data reached immigration agents

Policy & Compliance

China freezes vehicle software to end patch-later OTA era

Policy & Compliance

NRMA and Lexus Australia push Canberra toward car data law

Policy & Compliance

Quebec report declares car data consent fundamentally broken

Font ResizerAa
CarThreatCarThreat
  • Home
  • News
  • Features
  • Spotlight
  • Events
  • About
Search
  • Home
  • News
  • Features
  • Spotlight
  • Events
  • About
    • Our Mission
    • Services
    • Contact
Sign In Sign In
Follow US
© 2026 Carthreat.com. All right reserved.
Cybersecurity

DEF CON demo drains a locked EV battery with no keys

Accenture researchers plan to drain a locked EV's battery through V2G protocol flaws at DEF CON 34.

CarThreat Staff
Last updated: August 6, 2026 8:54 pm
By
ctadmin
2 Min Read
SHARE

Two Accenture researchers will show at DEF CON 34 on Saturday how a parked EV can be turned into a free power bank. Fabien Guillebot and Stepan Konicek plan to charge a phone directly from a locked vehicle’s traction battery with no authorization, no keys, and no official vehicle-to-load features involved.

The demo is built on new research into the security of vehicle-to-grid communication. As automakers push V2G capabilities, the charging link between car and grid is growing into an attack surface with destructive potential for high-voltage systems. The pair mapped the high-voltage charging architecture and found logic weaknesses hiding inside the battery management system ECUs that govern when and how energy leaves the pack.

To turn the findings into something testable, the researchers built ChargeSploit, a custom hardware and software toolkit for EV charging security testing. It can simulate both vehicles and chargers or sit between them as a physical man-in-the-middle, letting testers intercept, manipulate, and inject payloads into live communication flows. The live demonstration exploits V2G protocols and BMS weaknesses to force an unauthorized discharge, drawing real power out of the locked car.

The implications go beyond a party trick. Unauthorized discharge drains battery capacity, and flawed V2G logic could allow repeated drain cycles or grid-side abuse as bidirectional charging spreads across fleets and homes. The researchers are releasing ChargeSploit as a tool for the wider security testing community, giving OEMs and charger vendors a concrete way to probe their own high-voltage stacks before attackers do.

Join Our Newsletter
Subscribe to our newsletter to get our newest articles instantly!
TAGGED:Battery Management SystemsCharging InfrastructureDEF CONECU SecurityElectric Vehicles (EVs)V2G CommunicationsVulnerabilities
SOURCES:DEF CON 34 Main Stage Talks
Share This Article
Facebook Email Copy Link

Follow US

Find US on Social Medias
FacebookLike
XFollow
YoutubeSubscribe

You Might Also Like

Cybersecurity

Ecarx and May Mobility Partner on Level 4 Computing for Robotaxi Fleet

By
ctadmin
May 22, 2026
Cybersecurity

Nvidia Alpamayo 2 Super Targets L4 AV Development with Reasoning Stack

By
ctadmin
June 1, 2026
CybersecurityEV & Infrastructure

CISA warns of critical flaws in XCharge C6 EV charging stations

By
ctadmin
July 18, 2026
Cybersecurity

One VIN number can unlock years of driver tracking

By
ctadmin
August 9, 2026
Cybersecurity

PlaxidityX vDome Wins CLEPA Innovation Award for Proactive Anti-Theft Tech

By
ctadmin
May 22, 2026
CybersecurityResearch & Innovation

EvilValet attack uses AOSP test keys to compromise Honda infotainment

By
ctadmin
July 21, 2026

CarThreat

Intelligence for the EV and automotive security market
  • News
  • Features
  • Spotlight
  • Events
  • About Carthreat
  • Our Mission
  • Services
  • Contact Us
  • OBD-II
  • Automotive Ethernet
  • TCU
  • Infotainment Systems
  • SDVs
  • BMS
  • ECU Security
  • CAN Bus
  • Threat Intelligence
  • Cybersecurity
  • Digital Keys
  • Bluetooth Security
  • OTA Updates
  • Vulnerabilities
  • Relay Attacks
  • RCE
  • Data Privacy
  • EVs
  • Autonomous Driving
  • Pwn2Own Automotive
  • ISO/SAE 21434
  • UNECE R155
  • Regulations

© 2026 Carthreat.com. All right reserved.  Privacy Policy | Legal

Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?