CarThreat
  • Home
  • News
  • Features
  • Spotlight
  • Events
  • About
    • Our Mission
    • Services
    • Contact
Notification
  • Autonomous Driving
  • Automotive Ethernet
  • BMS
  • ECU
  • EV
  • ISO/SAE 21434
  • Infotainment
  • OTA Updates
  • OBD-II
  • Pwn2Own
  • RCE
  • SDVs
  • TCU
  • UNECE R155
Cybersecurity

St. Paul pulls plate reader cameras after data reached immigration agents

Policy & Compliance

China freezes vehicle software to end patch-later OTA era

Policy & Compliance

NRMA and Lexus Australia push Canberra toward car data law

Policy & Compliance

Quebec report declares car data consent fundamentally broken

Font ResizerAa
CarThreatCarThreat
  • Home
  • News
  • Features
  • Spotlight
  • Events
  • About
Search
  • Home
  • News
  • Features
  • Spotlight
  • Events
  • About
    • Our Mission
    • Services
    • Contact
Sign In Sign In
Follow US
© 2026 Carthreat.com. All right reserved.
Cybersecurity

EV charger worm escapes a Tesla wall plug and hops to rival brands

A wormable attack chain spreads from a Tesla wall charger into rival infotainment and EV charging gear on its own.

CarThreat Staff
Last updated: August 22, 2026 9:52 pm
By
ctadmin
2 Min Read
SHARE

Two researchers from the security firm Fuzzware.io built a worm that can crawl from a Tesla home charger into an Alpine infotainment system and from there into Autel and ChargePoint charging gear. Tobias Scharnowski and Kristian Covic showed the self-spreading chain at Black Hat USA earlier this month, and it ran end to end with no operator input after the first cable connection.

The attack starts at a Tesla Universal Wall Connector. The bug behind the code execution is a signed integer in the charger firmware that gets parsed during signature verification; driving it negative triggers a large out-of-bounds write to the stack. The pair also bypassed secure boot, letting unsigned code load before signature validation runs. That made the malware stick in flash memory and block later firmware updates.

In the demo, the infection left the Wall Connector over Wi-Fi and landed on an Alpine head unit, then bridged to an Autel MaxiCharger and a ChargePoint Home Flex over Bluetooth. Tesla acknowledged the bug and said the fix shipped in late 2025, with the updated firmware already rolled out across its charging hardware.

Rather than fuzzing the physical hardware, the pair emulated the Wall Connector’s firmware in software, pushing their test rate past 1,000 inputs per second. The device normally resists that approach: it ships as bare-metal Arm Cortex-M4 machine code with no public source and no debug symbols to lean on.

The work builds on the charge-port entry point that Synacktiv used in its 2025 Pwn2Own Automotive attack on the Wall Connector. Fuzzware.io took this year’s Master of Pwn title, banking $215K across seven demos with Felix Buchmann. Scharnowski stressed the limits: no proof of internet-wide exposure, no spread across arbitrary vehicles or chargers, and nothing resembling grid destabilization.

Join Our Newsletter
Subscribe to our newsletter to get our newest articles instantly!
TAGGED:Bluetooth SecurityCharging InfrastructureElectric Vehicles (EVs)Firmware SecurityInfotainment SystemsRemote Code Execution (RCE)Secure BootVulnerabilities
SOURCES:iTnews
Share This Article
Facebook Email Copy Link

Follow US

Find US on Social Medias
FacebookLike
XFollow
YoutubeSubscribe

You Might Also Like

Cybersecurity

NHTSA tells self-driving car makers to stop blocking ambulances

By
ctadmin
July 12, 2026
Cybersecurity

Researchers find 36 million GPS trackers open to vehicle theft

By
ctadmin
August 6, 2026
CybersecurityIndustry & Culture

Tata Electronics breach leaks Apple and Tesla supply chain secrets

By
ctadmin
July 18, 2026
Autonomous & AI SystemsCar NewsCybersecurityPolicy & Compliance

Zoox recalls robotaxis after smoke-blind software fails at fire scene

By
ctadmin
July 18, 2026
Cybersecurity

Tata Sierra EV clears penetration tests for India’s AIS-189 rules

By
ctadmin
August 20, 2026
Cybersecurity

Automotive Cybersecurity Market Forecast Predicts $3.14 Billion by 2033 as Connected Vehicle Risks Mount

By
ctadmin
June 19, 2026

CarThreat

Intelligence for the EV and automotive security market
  • News
  • Features
  • Spotlight
  • Events
  • About Carthreat
  • Our Mission
  • Services
  • Contact Us
  • OBD-II
  • Automotive Ethernet
  • TCU
  • Infotainment Systems
  • SDVs
  • BMS
  • ECU Security
  • CAN Bus
  • Threat Intelligence
  • Cybersecurity
  • Digital Keys
  • Bluetooth Security
  • OTA Updates
  • Vulnerabilities
  • Relay Attacks
  • RCE
  • Data Privacy
  • EVs
  • Autonomous Driving
  • Pwn2Own Automotive
  • ISO/SAE 21434
  • UNECE R155
  • Regulations

© 2026 Carthreat.com. All right reserved.  Privacy Policy | Legal

Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?