Keyless entry systems vulnerable to car thieves

Cars.com - Colin Bird
Remote keyless entry has been around for a while - since the late 1980s, in fact - and today it's almost standard on all new cars. But the pervasiveness of this feature is not without consequence. As researchers in Switzerland point out, the technology can make vehicle theft a breeze for a savvy thief.

Remote keyless-entry systems use radio waves that typically are specific to a manufacturer, and the signals are usually encrypted. When your vehicle's key fob is within six metres of the car, you're allowed to transmit a signal to unlock the doors, pop the trunk, remote start your car (when equipped) or activate the car alarm.

Researchers at ETH Zurich discovered that these encrypted signals are easy to intercept and trick.

The theft works by setting up two antennas, one near the targeted vehicle and one near the holder of the key fob - be it in a purse, bag or pocket. This equipment can usually be purchased for $100 to $1,000. The person with the antenna aimed at the owner of the key fob needs to get within eight metres of the target. In a store, this could be a few aisles away, so as to not arouse suspicion.

Once the antenna is near the intended victim's key fob, the key transmits a low-power signal to the antenna, which is then relayed to the antenna near the vehicle. Once that occurs, the thief can unlock the doors and drive away (if the vehicle has push-button start).

The Swiss researchers hacked into eight car manufacturers' passive-entry systems using this method. No cryptology or protocol could stop it.

While this system may seem fairly complicated, it could catch on with car thieves because of the cost of the equipment and anonymity. However, the hack cannot start the cars with traditional keys. Today's ignition systems are increasingly complicated and secure. That's one reason why car thefts are largely on the decline in the U.S.