Thursday 25 August 2022

Hyundai devs used sample code signing keys, making updates vulnerable - ReversingLabs

Hyundai: ‘Leading by example’
Developers of the entertainment unit in the Hyundai Ioniq didn’t seem to follow the sample code they were using. They reused an RSA code-signing key pair from an example, rather than generating their own.

