GNU social JP
  • FAQ
  • Login
GNU social JPは日本のGNU socialサーバーです。
Usage/ToS/admin/test/Pleroma FE
  • Public

    • Public
    • Network
    • Groups
    • Featured
    • Popular
    • People

Conversation

Notices

  1. Embed this notice
    q3k :blobcatcoffee: (q3k@social.hackerspace.pl)'s status on Tuesday, 05-Dec-2023 23:40:29 JST q3k :blobcatcoffee: q3k :blobcatcoffee:
    • Michał Kowalczyk
    • mrtick

    I can finally reveal some research I've been involved with over the past year or so.

    We (@redford, @mrtick and I) have reverse engineered the PLC code of NEWAG Impuls EMUs. These trains were locking up for arbitrary reasons after being serviced at third-party workshops. The manufacturer argued that this was because of malpractice by these workshops, and that they should be serviced by them instead of third parties.

    1/4

    In conversation Tuesday, 05-Dec-2023 23:40:29 JST from social.hackerspace.pl permalink

    Attachments


    1. https://object.ceph-waw3.hswaw.net/mastodon-prod/media_attachments/files/111/528/160/789/327/788/original/706c388736acc91d.png
    • Haelwenn /элвэн/ :triskell: and Pleroma-tan like this.
    • Aral Balkan, Pleroma-tan and clacke repeated this.
    • Embed this notice
      q3k :blobcatcoffee: (q3k@social.hackerspace.pl)'s status on Tuesday, 05-Dec-2023 23:41:30 JST q3k :blobcatcoffee: q3k :blobcatcoffee:
      in reply to

      The key unlock was deleted in newer PLC software versions, but the lock logic remained.

      After a certain update by NEWAG, the cabin controls would also display scary messages about copyright violations if the HMI detected a subset of conditions that should've engaged the lock but the train was still operational.

      The trains also had a GSM telemetry unit that was broadcasting lock conditions, and in some cases appeared to be able to lock the train remotely.

      3/4

      In conversation Tuesday, 05-Dec-2023 23:41:30 JST permalink

      Attachments


      1. https://object.ceph-waw3.hswaw.net/mastodon-prod/media_attachments/files/111/528/168/018/250/594/original/427679a497b44350.png
      Pleroma-tan likes this.
      GreenSkyOverMe (Monika) and Pleroma-tan repeated this.
    • Embed this notice
      q3k :blobcatcoffee: (q3k@social.hackerspace.pl)'s status on Tuesday, 05-Dec-2023 23:41:31 JST q3k :blobcatcoffee: q3k :blobcatcoffee:
      in reply to

      We found that the PLC code actually contained logic that would lock up the train with bogus error codes after some date, or if the train wasn't running for a given time. One version of the controller actually contained GPS coordinates to contain the behaviour to third party workshops.

      It was also possible to unlock the trains by pressing a key combination in the cabin controls. None of this was documented.

      2/4

      In conversation Tuesday, 05-Dec-2023 23:41:31 JST permalink

      Attachments


      1. https://object.ceph-waw3.hswaw.net/mastodon-prod/media_attachments/files/111/528/164/371/123/713/original/4753298f022e1259.png

      2. https://object.ceph-waw3.hswaw.net/mastodon-prod/media_attachments/files/111/528/185/056/590/929/original/3b71c66145a1f05c.png
      3. No result found on File_thumbnail lookup.
        workshops.it
        This domain may be for sale!
      clacke and Pleroma-tan like this.
      GreenSkyOverMe (Monika) and Pleroma-tan repeated this.
    • Embed this notice
      q3k :blobcatcoffee: (q3k@social.hackerspace.pl)'s status on Tuesday, 05-Dec-2023 23:41:37 JST q3k :blobcatcoffee: q3k :blobcatcoffee:
      in reply to
      • Michał Kowalczyk
      • mrtick
      • ZaufanaTrzeciaStrona.pl

      @redford and @mrtick held an unrecorded talk a bout this at OhMyHack in Warsaw - I unfortunately couldn't make it because of Munich snow.

      For now this is making the rounds in Polish-speaking sources, but we do have a talk scheduled about this at 37C3, in which we plan to do a deep dive into this and actually publish our findings.

      @zaufanatrzeciastrona 's article about this: https://zaufanatrzeciastrona.pl/post/o-trzech-takich-co-zhakowali-prawdziwy-pociag-a-nawet-30-pociagow/

      In conversation Tuesday, 05-Dec-2023 23:41:37 JST permalink

      Attachments

      1. Domain not in remote thumbnail source whitelist: zaufanatrzeciastrona.pl
        O trzech takich, co zhakowali prawdziwy pociąg – a nawet 30 pociągów
        from Adam Haertle
      Haelwenn /элвэн/ :triskell: and Pleroma-tan like this.
    • Embed this notice
      GreenSkyOverMe (Monika) (greenskyoverme@ohai.social)'s status on Tuesday, 05-Dec-2023 23:58:40 JST GreenSkyOverMe (Monika) GreenSkyOverMe (Monika)
      in reply to

      @q3k O.M.G.

      In conversation Tuesday, 05-Dec-2023 23:58:40 JST permalink
    • Embed this notice
      Aral Balkan (aral@mastodon.ar.al)'s status on Wednesday, 06-Dec-2023 02:48:11 JST Aral Balkan Aral Balkan
      in reply to

      @q3k Malware as a Service.

      In conversation Wednesday, 06-Dec-2023 02:48:11 JST permalink
    • Embed this notice
      Emmanuele Bassi (ebassi@mastodon.social)'s status on Wednesday, 06-Dec-2023 02:54:38 JST Emmanuele Bassi Emmanuele Bassi
      in reply to
      • Michał Kowalczyk
      • mrtick

      @q3k @redford @mrtick I bet the managers and engineers were all proud of this stuff

      In conversation Wednesday, 06-Dec-2023 02:54:38 JST permalink

      Attachments


      1. https://files.mastodon.social/media_attachments/files/111/528/500/356/945/501/original/14184fe2c00012f8.jpg
      Haelwenn /элвэн/ :triskell: and clacke like this.
    • Embed this notice
      Pleroma-tan (kirby@lab.nyanide.com)'s status on Wednesday, 06-Dec-2023 02:56:27 JST Pleroma-tan Pleroma-tan
      in reply to
      @q3k This is a W

      Good job!!!!
      In conversation Wednesday, 06-Dec-2023 02:56:27 JST permalink
    • Embed this notice
      A* Ulven :verified_blobcat: (algorithmwolf@ioc.exchange)'s status on Wednesday, 06-Dec-2023 03:42:12 JST A* Ulven :verified_blobcat: A* Ulven :verified_blobcat:
      in reply to
      • Michał Kowalczyk
      • mrtick
      • ZaufanaTrzeciaStrona.pl

      @q3k @redford @mrtick @zaufanatrzeciastrona is anyone getting sued at least?

      Because this is ridiculously anticompetitive behaviour.

      In conversation Wednesday, 06-Dec-2023 03:42:12 JST permalink
      clacke likes this.
    • Embed this notice
      Kevin Karhan :verified: (kkarhan@mstdn.social)'s status on Wednesday, 06-Dec-2023 03:42:16 JST Kevin Karhan :verified: Kevin Karhan :verified:
      in reply to
      • European Commission
      • Bundesnetzagentur

      @q3k Does any regulator know of this #Sabotage of #CriticalInfrastructure by the #Manufacturer?

      I'm shure these trains ain't exclusive to to one country and regulators from @BNetzA and @kartellamt@social.bund.de to @EU_Commission will likely be very interested in such deliberate acts of #AntiCompetiton, #AntiRepair and basically attacks on #PublicTransport #infrastructure done by #NEWAG to fleece customers!

      I mean, this is next-level assholeism and makes #JohnDeere and #Apple look like #RightToRepair fans.

      In conversation Wednesday, 06-Dec-2023 03:42:16 JST permalink
      clacke likes this.
    • Embed this notice
      Sexy Moon (moon@shitposter.club)'s status on Wednesday, 06-Dec-2023 07:30:20 JST Sexy Moon Sexy Moon
      in reply to
      • A* Ulven :verified_blobcat:
      • Michał Kowalczyk
      • mrtick
      • ZaufanaTrzeciaStrona.pl
      @AlgorithmWolf @q3k @redford @mrtick @zaufanatrzeciastrona it looks worse to me, it looks like they deliberately sabotaged the operation of public transportation vehicles. I hope it gets elevated to a criminal offense, this is worse than if a passenger got in a train and disabled it, which they would definitely go to jail for.
      In conversation Wednesday, 06-Dec-2023 07:30:20 JST permalink
    • Embed this notice
      Kermode (gemlog@tilde.zone)'s status on Wednesday, 06-Dec-2023 14:23:27 JST Kermode Kermode
      in reply to
      • Your friendly 'net denizen
      • Michał Kowalczyk
      • mrtick

      @cstanhope
      I did see this also on HN earlier today at work. Cool to see the actual ppl on fedi now though :-)
      https://news.ycombinator.com/item?id=38530885

      @q3k @redford @mrtick

      In conversation Wednesday, 06-Dec-2023 14:23:27 JST permalink

      Attachments

      1. No result found on File_thumbnail lookup.
        https://news.ycombinator.com/item?id=38530885%40q3k
      clacke likes this.
    • Embed this notice
      Iván Rivera (brucknerite@social.brucknerite.net)'s status on Wednesday, 06-Dec-2023 16:15:27 JST Iván Rivera Iván Rivera
      in reply to
      • Cory Doctorow
      • Mans R

      @mansr @q3k WOW. Just wow. This is, as Cory Doctorow @pluralistic would put it, the enshittification of trains. These are John Deere-level shenanigans.

      In conversation Wednesday, 06-Dec-2023 16:15:27 JST permalink
      clacke likes this.
    • Embed this notice
      Mans R (mansr@society.oftrolls.com)'s status on Wednesday, 06-Dec-2023 16:15:28 JST Mans R Mans R
      in reply to
      • Iván Rivera

      @q3k Might interest @brucknerite

      In conversation Wednesday, 06-Dec-2023 16:15:28 JST permalink

Feeds

  • Activity Streams
  • RSS 2.0
  • Atom
  • Help
  • About
  • FAQ
  • TOS
  • Privacy
  • Source
  • Version
  • Contact

GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.

Creative Commons Attribution 3.0 All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.