ENZHMS
Link Copiedcheck_circle
EV

Charging Desert Caused By Black Hat Attacks - Are CPO’s Beefing Up Security?

KS

20-2-2024

Share via

sxsx-(2).jpg


The last couple of days has been quite an adventure for most CPOs in the country. Many of them, in some way or form, have come under threat from cyber criminals who seek to mess up the charging stations operations and to gain access to its highly valuable users data.

It all started several days back with the R00TK1T threat to gain access to Malaysia's EV charging network. From the images shared, it would appear to be the TNB and Go-2-U charging network, based on the charging map icon and names on the charging locations shown.


xxx.jpg


These claims were somewhat verified as a user, Ronnie Soon, took to the Malaysian Electric Vehicle Owners Club (MYEVOC) Facebook page. He pointed out that the TNBX Chargers running on the GO To-U system were down, resulting in him not being able to use that particular charger.


Screenshot-2024-02-20-131015.jpg


GO To-U however took to their social media denying R00TK1T‘s claims that their back-end system was hacked and all the EV chargers on its platform were accessible and operational. A quick check on their app showed not much abnormality with exception to a few EV chargers down for maintenance.

However, this first “incident” would seem to be just the tip of the iceberg as Go To-U does not have a large number of chargers that could make a relative impact to most EV users.  The mass outage that happened yesterday which involved Gentari, ChargEV, JomCharge and DC Handal did hit that spot despite the matter being resolved in a relatively short time.


DSC08885.JPG


From our insider sources, we learned the tri-party network was hacked by an unidentifiable party who somehow has not taken claim to the act, unlike R00TK1T. The hack was identified as a base Level 4 Distributed Denial-of-Service (DDoS) hack which aimed at their portal.

To those who are in the dark, DDoS Attack is where hackers flood a server with internet traffic to prevent users from accessing connected online services and sites. In this case a few IP was compromised leading to the nationwide downtime yesterday.


image-(4s6).jpg


However, on the bright side, we learned that no user data and payment tokens were compromised and the entire ordeal only lasted a few hours; thanks to the preparedness of the CPO in handling such matters.

We are sure many users might be worried of such attacks and if they would be vulnerable, to this we say fret not as such attacks are a norm in this digital era and what matters most is the measures taken to safeguard user data and to minimise downtime.


EV-Wave-DC-Handal1-Caricarz-(1).jpg


However having said that, we would like to point out again that this could have just been the tip of the iceberg as once you are on the radar of the hcackers. We are pretty sure they would look into other means to intensify future hacks to even a Level 7 DDoS Attack targeting or more.

Hence the question arises, are ALL CPOs in Malaysia (or globally even) prepared for a full on onslaught of hacks in the near future? What are the measures being taken to safeguard their sites, user data and payment token?




Share This Article

Written By

KS

More then half his life spend being obsessed with all thing go-fast, performance and automotive only to find out he's actually Captain Slow behind the wheels...oh well! https://www.linkedin.com/in/kumeran-sagathevan/

Share via

JPJ Running Numbers

KUALA LUMPUR

VPC1474

SELANGOR

BSE4520

JOHOR

JXW5039

PULAU PINANG

PRQ3490

PERAK

ANV3507

PAHANG

CFB6589

KEDAH

KGA4255

NEGERI SEMBILAN

NEF7150

KOTA KINABALU

SJK7407

KUCHING

QAB3079L

Last updated 02 May, 2025

Fuel Price

Petrol

RON 95

RM 2.05

RON 97

RM 3.18

RON 100

RM 5.00

VPR

RM 6.23

Diesel

EURO 5 B10

RM 2.88

EURO 5 B7

RM 3.08

Last updated 01 May, 2025

Latest News

EV
bZ3X: Could This Be Toyota’s Most Relevant EV Yet?

bZ3X: Could This Be Toyota’s Most Relevant EV Yet?

Built for China, fit for the world - the bZ3X could be Toyota’s most competitive EV offering yet.

02-05-2025
EV
CATL Becomes First to Clear China’s Tough Battery Safety Standard

CATL Becomes First to Clear China’s Tough Battery Safety Standard

CATL is already compliant to new rules that demand no fire or explosion, even after thermal runaway.

02-05-2025
EV
Production-Ready Isuzu D-Max EV Revealed – Dual-Motor, 66.9 kWh Battery, 263 KM Range

Production-Ready Isuzu D-Max EV Revealed – Dual-Motor, 66.9 kWh Battery, 263 KM Range

Production-ready Isuzu D-Max EV revealed, packs a dual-motor setup juiced by a 66.9 kWh battery promising 263 KM range.

01-05-2025
EV
UMWT Hands Over xEV Fleet to MOT

UMWT Hands Over xEV Fleet to MOT

UMW Toyota Motor (UMWT) delivers xEV fleet to MOT, effort reinforces its role in innovating and shaping sustainable mobility policy.

01-05-2025
EV
2026 Leapmotor C10 Debuts in China with 800-volt Architecture

2026 Leapmotor C10 Debuts in China with 800-volt Architecture

Presales for upgraded 2026 Leapmotor C10 starts in China, major enhancements includes new 800-volt electrical system, more power, and improved range.

30-04-2025
EV
Xiaomi’s Upcoming YU7 EV SUV May Get Second Variant

Xiaomi’s Upcoming YU7 EV SUV May Get Second Variant

Xiaomi will offer a new single-motor YU7 EV SUV with an 835km range, complementing the previously announced 820km version.

30-04-2025
EV
iCaur 03 Teased for Malaysia Autoshow 2025

iCaur 03 Teased for Malaysia Autoshow 2025

Chery teases the Jaecoo J6 as the iCaur 03 ahead of Malaysia Auto Show 2025.

29-04-2025
EV
New Mercedes-AMG EV Saloon Teased Again Ahead Of June Debut

New Mercedes-AMG EV Saloon Teased Again Ahead Of June Debut

New Mercedes-AMG EV saloon officially teased again, debuts in June as rival to Taycan and e-tron GT.

29-04-2025

Show More

trending_flat
Carz Automedia Malaysia Logo
About Us

CarzAutoMedia: Stay connected to the latest car news! Get instant updates on new releases, industry trends, and automotive innovations. Your go-to source for 24/7 coverage of everything automotive.

© 2024 CariCarz.com. All Rights Reserved.