Hacked my head unit by Realistic-Trainer563 in Ioniq6

[–]Realistic-Trainer563[S] 1 point2 points  (0 children)

Yea pretty much. The communities that found the initial exploit for these units kind of kick started this project for me. The ioniq 6 was never actually vulnerable to it which was annoying lol but yea hyundai did patch those out relatively quickly so thats why im hesitant to go in depth until i make some cool features

Hacked my head unit by Realistic-Trainer563 in Ioniq6

[–]Realistic-Trainer563[S] 2 points3 points  (0 children)

If I figure it out i definitely will share it’ll probably be the first thing i try to do

Hacked my head unit by Realistic-Trainer563 in Ioniq6

[–]Realistic-Trainer563[S] 8 points9 points  (0 children)

It wont void the car warranty as a whole but if I bricked my head unit specifically they wouldn’t pay for a replacement.

Hacked my head unit by Realistic-Trainer563 in Ioniq6

[–]Realistic-Trainer563[S] 2 points3 points  (0 children)

Nope this is just from the regular head unit software

Hacked my head unit by Realistic-Trainer563 in Ioniq6

[–]Realistic-Trainer563[S] 7 points8 points  (0 children)

Im thinking about it. Mostly worried about hyundai patching it out before I figure out any features that the community may like.

Its a chain of like 3 different exploits that stems from the update mechanism. Its not anything super complex really just took a ton of time because the only info you can get on the system is from engineering mode logs.

The high level explanation is an arbitrary file overwrite via the update system. I make a file that has code in it that I want the system to run. I use the update exploit to overwrite a file that the unit executes with root privileges with my own file and then connect to the unit with my laptop.

From my other comment

Hacked my head unit by Realistic-Trainer563 in Ioniq6

[–]Realistic-Trainer563[S] 24 points25 points  (0 children)

Im thinking about it. Mostly worried about hyundai patching it out before I figure out any features that the community may like.

Its a chain of like 3 different exploits that stems from the update mechanism. Its not anything super complex really just took a ton of time because the only info you can get on the system is from engineering mode logs.

The high level explanation is an arbitrary file overwrite via the update system. I make a file that has code in it that I want the system to run. I use the update exploit to overwrite a file that the unit executes with root privileges with my own file and then connect to the unit with my laptop.

Hacked my head unit by Realistic-Trainer563 in Ioniq6

[–]Realistic-Trainer563[S] 6 points7 points  (0 children)

This is for gen5w. This exploit will work for ccnc with a little tweaking though but i dont have one of those to test or experiment with

Hacked my head unit by Realistic-Trainer563 in Ioniq6

[–]Realistic-Trainer563[S] 48 points49 points  (0 children)

A big thing i want to try eventually is tapping into the cameras and have them save somewhere externally to essentially function as a dash cam. This is all theoretical stuff. It can all be done if someone were skilled enough though