CarThreat
  • Home
  • News
  • Features
  • Spotlight
  • Events
  • About
    • Our Mission
    • Services
    • Contact
Notification
  • Autonomous Driving
  • Automotive Ethernet
  • BMS
  • ECU
  • EV
  • ISO/SAE 21434
  • Infotainment
  • OTA Updates
  • OBD-II
  • Pwn2Own
  • RCE
  • SDVs
  • TCU
  • UNECE R155
Cybersecurity

St. Paul pulls plate reader cameras after data reached immigration agents

Policy & Compliance

China freezes vehicle software to end patch-later OTA era

Policy & Compliance

NRMA and Lexus Australia push Canberra toward car data law

Policy & Compliance

Quebec report declares car data consent fundamentally broken

Font ResizerAa
CarThreatCarThreat
  • Home
  • News
  • Features
  • Spotlight
  • Events
  • About
Search
  • Home
  • News
  • Features
  • Spotlight
  • Events
  • About
    • Our Mission
    • Services
    • Contact
Sign In Sign In
Follow US
© 2026 Carthreat.com. All right reserved.
Cybersecurity

Automotive Cyber Vulnerabilities Double Year Over Year as Attacks Get Easier

CarThreat Staff
Last updated: July 1, 2026 1:51 am
By
ctadmin
2 Min Read
SHARE

Vulnerability Surge and Lowered Barriers

A new report from PCA Cyber Security reveals a dramatic 105% year on year increase in automotive cybersecurity vulnerabilities. During the first quarter, researchers catalogued 265 new automotive CVEs, marking a 28% jump from the previous quarter. More concerning, 88% of these vulnerabilities could be exploited without specialized tools or extensive preparation, indicating that attack methods are becoming more accessible to a wider range of threat actors.

Contents
Vulnerability Surge and Lowered BarriersIn Vehicle Ethernet as Primary Attack VectorEcosystem Wide Risks and Real World Incidents

In Vehicle Ethernet as Primary Attack Vector

Among the 14 distinct entry methods identified, in vehicle Ethernet networks emerged as the dominant attack surface, accounting for 25% of all vulnerabilities tracked in the quarter. This finding is particularly significant as automakers increasingly adopt Ethernet to replace older network architectures and support connected features. Without rigorous security design and testing, this architectural shift expands the attack surface across the entire vehicle.

Ecosystem Wide Risks and Real World Incidents

The report demonstrates that automotive cyber risk extends far beyond isolated vehicle components. Vulnerabilities now span cloud services, mobile apps, support operations, and online marketplaces. Real world impacts were demonstrated by a cyberattack on a Russian telematics provider, whose compromised mobile app left owners unable to unlock doors or start engines for nearly two weeks. Another incident exposed 12.4 million user records from a major automotive marketplace through a voice phishing attack. The Pwn2Own Automotive competition further highlighted the scale of the challenge, with 73 entries uncovering zero day flaws in Tesla infotainment systems, mainstream head units, and EV chargers.

Source: SecurityBrief

Join Our Newsletter
Subscribe to our newsletter to get our newest articles instantly!
TAGGED:Automotive SecurityCVEEthernetPCA Cyber SecurityPwn2OwnTelematics
Share This Article
Facebook Email Copy Link

Follow US

Find US on Social Medias
FacebookLike
XFollow
YoutubeSubscribe

You Might Also Like

Cybersecurity

VicOne research reveals ransomware threats targeting global logistics fleets

By
ctadmin
July 18, 2026
Cybersecurity

Rollback bug lets attackers clone key fobs in rolling code systems

By
ctadmin
August 6, 2026
Cybersecurity

Lightweight detector catches rogue cars broadcasting fake safety data

By
ctadmin
August 13, 2026
Cybersecurity

Automotive IQ names its top 20 cybersecurity leaders for 2026

By
ctadmin
July 12, 2026
Cybersecurity

EV charger firmware compilers escape independent security testing

By
ctadmin
August 6, 2026
Cybersecurity

Analog fingerprints catch counterfeit ECUs that pass crypto checks

By
ctadmin
August 12, 2026

CarThreat

Intelligence for the EV and automotive security market
  • News
  • Features
  • Spotlight
  • Events
  • About Carthreat
  • Our Mission
  • Services
  • Contact Us
  • OBD-II
  • Automotive Ethernet
  • TCU
  • Infotainment Systems
  • SDVs
  • BMS
  • ECU Security
  • CAN Bus
  • OTA Updates
  • Vulnerabilities
  • Relay Attacks
  • RCE
  • Threat Intelligence
  • Cybersecurity
  • Digital Keys
  • Bluetooth Security
  • ISO/SAE 21434
  • UNECE R155
  • Regulations
  • Data Privacy
  • EVs
  • Autonomous Driving
  • Pwn2Own Automotive

© 2026 Carthreat.com. All right reserved.  Privacy Policy | Legal

Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?