⚠️ CVE-2026-26051 (CRITICAL, CVSS 9.4) in Mobiliti e-mobi.hu: Unauthenticated OCPP WebSocket endpoints allow charging station impersonation + backend manipulation. Enforce strong auth & monitor now. https://radar.offseq.com/threat/cve-2026-26051-cwe-306-in-mobiliti-e-mobihu-70ec4ea6 #OffSeq #CVE202626051 #EVsecurity
🚨 CRITICAL: CVE-2026-24731 in EV2GO ev2go.io — all versions. WebSocket endpoints have no auth, letting attackers impersonate stations, escalate privileges, and manipulate backend data. Monitor OCPP traffic now. https://radar.offseq.com/threat/cve-2026-24731-cwe-306-in-ev2go-ev2goio-e42cb5b8 #OffSeq #CVE202624731 #infosec #EVsecurity

Tesla was among the systems successfully exploited at Pwn2Own Automotive 2026, where researchers demonstrated chained zero-day vulnerabilities against IVI systems and EV charging hardware.

All findings fall under coordinated disclosure, reinforcing the importance of independent testing, patch timelines, and supply-chain visibility as vehicles evolve into software-defined platforms.

Source: https://www.bleepingcomputer.com/news/security/tesla-hacked-37-zero-days-demoed-at-pwn2own-automotive-2026/

Measured discussion welcome. Follow TechNadu for neutral automotive security coverage.

#Tesla #AutomotiveInfosec #ZeroDay #Pwn2Own #EVSecurity #ResponsibleDisclosure

The UK plans to ban Chinese EVs from military use over spying fears, echoing the US crackdown on DJI drones despite no public proof.

BYD’s UK sales soar as security concerns clash with consumer demand.

Is this security or protectionism?

#TechTensions #EVSecurity

https://evxl.co/2025/11/19/uk-targets-chinese-evs-military-ban-spying-fears/

New side-channel attack alert! 🚨 Researchers discovered "Leaky Batteries" can expose EV owner privacy via battery consumption data. Driver ID, trip locations & more at risk! 😲 Automakers need to act fast! 🛡️ Read more: https://cyberinsider.com/new-side-channel-attack-leaky-batteries-threatens-ev-owner-privacy/ #EVsecurity #privacy #cybersecurity #newz
New Side-Channel Attack ‘Leaky Batteries’ Threatens EV Owner Privacy

Researchers have discovered a new side-channel attack that exploit EV battery consumption data to reveal sensitive user information.

CyberInsider

The Dark Side of EV Cars - Hardwired Communication Modules

Millions of EV cars shredded because of legacy only supported communication modules.

"Since these comm stacks have been hardwired in the integrated modules and are not upgradable for obvious security reasons, we cannot upgrade these cars in an economically viable manner"

#evsecurity #nottrue #parody
Just as a reminder how stupid the 2g/3g smart meter discussion got.
https://www.theregister.com/2023/10/23/millions_of_smart_meters_will/

Millions of smart meters will brick it when 2G and 3G turns off

Public Accounts Committee demands timetable for replacements, because things have run so smoothly so far...

The Register