Nissan: Difference between revisions
invasive information gather/sales |
|||
Line 53: | Line 53: | ||
===Safety issues with the NissanConnect EV app=== | ===Safety issues with the NissanConnect EV app=== | ||
Researchers at Black Hat Asia 2025 have found issues within the NissanConnectEV app, since it relied upon a Vehicle Identification Number to communicate with the user and to authenticate communications, and this number proved to be easy to reverse engineer. This allowed hackers to easily access the app.<ref>{{Cite web |title=Researchers Hack Nissan Leaf Remotely, Exposing Major Security Flaws in Car App |url=https://www.abijita.com/researchers-hack-nissan-leaf-remotely-exposing-major-security-flaws-in-car-app/ |url-status=live}}</ref><ref>{{Cite web |title=Hackers can access the Nissan Leaf via insecure APIs |url=https://www.csoonline.com/article/554905/hackers-can-access-the-nissan-leaf-via-insecure-apis.html |url-status=live}}</ref><ref>{{Cite web |title=Critical Security Vulnerabilities Found in Nissan Leaf: Remote Hacking Demonstrated |url=https://www.security.land/critical-security-vulnerabilities-found-in-nissan-leaf-remote-hacking-demonstrated/ |url-status=live}}</ref><ref>{{Cite web |title=API Flaw Exposes Nissan LEAF Cars to Remote Attacks |url=https://www.show.it/en/api-flaw-exposes-nissan-leaf-cars-to-remote-attacks/ |url-status=live}}</ref> | Researchers at Black Hat Asia 2025 have found issues within the NissanConnectEV app, since it relied upon a Vehicle Identification Number to communicate with the user and to authenticate communications, and this number proved to be easy to reverse engineer. This allowed hackers to easily access the app.<ref>{{Cite web |title=Researchers Hack Nissan Leaf Remotely, Exposing Major Security Flaws in Car App |url=https://www.abijita.com/researchers-hack-nissan-leaf-remotely-exposing-major-security-flaws-in-car-app/ |url-status=live}}</ref><ref>{{Cite web |title=Hackers can access the Nissan Leaf via insecure APIs |url=https://www.csoonline.com/article/554905/hackers-can-access-the-nissan-leaf-via-insecure-apis.html |url-status=live}}</ref><ref>{{Cite web |title=Critical Security Vulnerabilities Found in Nissan Leaf: Remote Hacking Demonstrated |url=https://www.security.land/critical-security-vulnerabilities-found-in-nissan-leaf-remote-hacking-demonstrated/ |url-status=live}}</ref><ref>{{Cite web |title=API Flaw Exposes Nissan LEAF Cars to Remote Attacks |url=https://www.show.it/en/api-flaw-exposes-nissan-leaf-cars-to-remote-attacks/ |url-status=live}}</ref> | ||
=== Invasive data sharing === | |||
User has to agree to Nissan gathering and selling various private information. | |||
==References== | ==References== | ||
<references /> | <references /> | ||
[[Category:Nissan]] | [[Category:Nissan]] |