Hacker News new | ask | show | jobs
by songgao 1549 days ago
I’m having a hard time coming up with a reason why there needs to be any replay protection here. That port is supposed to open without unlocking the car. You can approach a locked Tesla and press the button on a charging connector and it’ll open. The whole thing is unauthenticated by design.
3 comments

On my 2017 model x the charging port is locked shut when the car is locked.

I get a strange amount of vitriol from anti-EV folks where I live, I could imagine somebody putting a metaphorical potato in the metaphorical tailpipe. Although that type of person is more likely to use a screwdriver than a replay attack.

Is it really locked? I don't know the Model X well enough, but on my 2018 Model S the charging port is underneath the reflective part next to the brake light, which you can open by pressing down on it. I only found out I didn't have to use my key to open it a couple months ago.
Yep, it's really locked. If the car is locked pressing the little reflective thing does nothing. The flap has a lock and a servo to flip it open and closed - I can open and close it from the MCU touchscreen.

Makes sense that they'd ditch this as unnecessary complication.

Don't forget being near the car with your key is enough to be "unlocked". Ditch your fob inside and try it.
Yeah. The charging port on my Volvo never locks, and I see that as a good thing - it means I can get out of the car, lock it, then go around and plug the charging cable in. Don't really see any issue with it.
Off topic, I'm curious, as a Volvo owner, do you think Volvo is Swedish owned?
I think it's a Swedish car. Even though my particular one was actually made in China.

And I know what you're hinting at but I don't actually care. Just like a Land Rover is a British car even though it's owned by an Indian corporation.

I bought a Volvo a long time back and it turned out it was a Ford Focus with a Volvo skin. My mistake. Never again. Not that I have anything against Ford but the quality was atrocious — things just falling apart for no reason at all other than they must have not been made properly. I babied the car and the things that went wrong ($1000 - $2000 repairs) were amazing… like all the parts in the mechanism for moving the moon roof, which I pretty much never opened, spontaneously started sliding around in the rooftop one day. I heard they are now Chinese owned, although it seems buyers think they are still Swedish. Thanks for the reply.
So for extra context - Volvo was bought out by Ford years and years ago, and Ford only wanted them for their patents and tech. For example the engine in the Focus RS is derived from the Volvo designed T5 motor.

Then because Ford had absolutely no interest in the brand, they basically invested zero money, the cars stagnated, and yes, by the end of the Ford's ownership, they were absolutely crap and I would not recommend anyone buying one.

Then Ford finally got bored with it, and sold it to Geely, a chinese corporation - but they basically said "we'll leave you alone, here's an unlimited purse of money to design a car that people will want" - and so Volvo designed the new SPA platform, which they used for the XC60 then XC90 then all their other cars, and those were and still are regarded as hugely successful and well designed cars, with good engines. Under the chinese ownership Volvo was allowed to pioneer the plug-in hybrid drivetrains for instance, and they were one of the first ones to offer them.

Nowadays the domination they had in that area is weaning a bit, but Volvo is innovating with immediate launch of SPA2 platform, and hardcore push towards full electrification of all models.

>>I heard they are now Chinese owned, although it seems buyers think they are still Swedish

As far as I can tell, all Geely does is provides budget - the cars are still designed by Swedes. That makes it a Swedish car in my book.

Thanks again, good info!
The main issue will be TV-b-Gone style trolling tools. And the open charge ports may attract vandalism.

Doesn't mean that it is a bad design.