{"id":341,"date":"2024-09-24T12:05:14","date_gmt":"2024-09-24T12:05:14","guid":{"rendered":"https:\/\/cybersecurityinfocus.com\/?p=341"},"modified":"2024-09-24T12:05:14","modified_gmt":"2024-09-24T12:05:14","slug":"us-to-ban-connected-vehicle-tech-from-china-russia-due-to-national-security-risks","status":"publish","type":"post","link":"https:\/\/cybersecurityinfocus.com\/?p=341","title":{"rendered":"US to ban connected vehicle tech from China, Russia due to national security risks"},"content":{"rendered":"<div>\n<div class=\"grid grid--cols-10@md grid--cols-8@lg article-column\">\n<div class=\"col-12 col-10@md col-6@lg col-start-3@lg\">\n<div class=\"article-column__content\">\n<div class=\"container\"><\/div>\n<p>The Biden administration is looking to ban the import of connected vehicles and associated technologies from China and Russia, calling them the \u201ccountries of security concerns.\u201d<\/p>\n<p>The prohibiting rule has been proposed by the Department of Commerce in favor of, as the proposal points out, protecting the US from the national security risks associated with connected vehicle technologies from these nations.<\/p>\n<p>\u201cThe Department of Commerce is issuing a notice of proposed rulemaking (NPRM) that would, if finalized as proposed, prohibit the sale or import of connected vehicles that incorporate certain technology and the import of particular components themselves from countries of concern, specifically the People\u2019s Republic of China (PRC) and Russia,\u201d the department said in a <a href=\"https:\/\/www.whitehouse.gov\/briefing-room\/statements-releases\/2024\/09\/23\/fact-sheet-protecting-america-from-connected-vehicle-technology-from-countries-of-concern\/#:~:text=The%20Department%20of%20Commerce%20is,specifically%20the%20People's%20Republic%20of\" target=\"_blank\" rel=\"noopener\">statement<\/a> issued on Monday.<\/p>\n<p>The ban specifically aims to prohibit imported automobiles with vehicle connectivity systems (VCS) and automated driving systems (ADS) from these countries.<\/p>\n<h2 class=\"wp-block-heading\">Why ban connected vehicles?<\/h2>\n<p>Connected vehicle technologies, which rely on internet connectivity, sensors, and data exchange for enhanced features such as autonomous driving, navigation, and vehicle-to-vehicle communication, pose several security concerns for importing nations, including unauthorized surveillance, espionage, mass vehicle immobilization, cyberattacks, and national security threats.<\/p>\n<p>\u201cAs the Department of Commerce has found, vehicles\u2019 increasing connectivity creates opportunities to collect and exploit sensitive information,\u201d the department added. \u201cCertain hardware and software in connected vehicles enable the capture of information about geographic areas or critical infrastructure, and present opportunities for malicious actors to disrupt the operations of infrastructure or the vehicles themselves.\u201d<\/p>\n<p>\u201cThe Biden Administration is committed to ensuring that our automotive supply chains are resilient and secure from foreign threats,\u201d the statement added.<\/p>\n<p>The regulation specifically addresses VCS, which encompasses technologies and components that link vehicles to external networks, such as Bluetooth, cellular, satellite, and Wi-Fi modules. It also covers ADS, enabling highly autonomous vehicles to function without a driver in control.<\/p>\n<h2 class=\"wp-block-heading\">Targeting Chinese and Russian imports<\/h2>\n<p>Given historical attempts at <a href=\"https:\/\/www.csoonline.com\/article\/1310222\/russias-use-of-malware-to-enhance-influence-operations-sign-of-things-to-come.html\" target=\"_blank\" rel=\"noopener\">sabotaging<\/a> the US\u2019s <a href=\"https:\/\/www.csoonline.com\/article\/559429\/the-us-has-sanctioned-russia-over-election-hacking.html\" target=\"_blank\" rel=\"noopener\">critical systems<\/a> and conducting <a href=\"https:\/\/www.csoonline.com\/article\/575393\/microsoft-links-attacks-on-american-critical-infrastructure-systems-to-china.html\" target=\"_blank\" rel=\"noopener\">espionage operations<\/a> remotely, the White House is looking to tighten up loose ends.<\/p>\n<p>\u201cCommerce has determined that certain technologies used in connected vehicles from the PRC and Russia present particularly acute threats,\u201d the statement added. \u201cThese countries of concern could use critical technologies within our supply chains for surveillance and sabotage to undermine national security.\u201d<\/p>\n<p>According to the proposal, if finalized, the prohibition on software would take effect for Model Year 2027, and the prohibitions on hardware would take effect for Model Year 2030, or January 1, 2029, for units without a model year.<\/p>\n<p>This is in line with other cybersecurity efforts the US has been making in connection with these countries. Earlier this year, the US <a href=\"https:\/\/www.csoonline.com\/article\/2437595\/us-bans-kaspersky-labs-over-national-security-concerns.html\" target=\"_blank\" rel=\"noopener\">banned<\/a> Moscow-based cybersecurity company, <a href=\"https:\/\/www.csoonline.com\/article\/3538795\/kasperskys-us-customers-receive-ultraav-swap-raising-red-flags.html\">Kaspersky Labs<\/a>, over concerns of strong ties to Russia\u2019s nation-state cyber offensives. To that end, US-based users are reportedly waking up to their Kaspersky antivirus subscription swapped, without notice, with a low-key software entity, \u201cUltraAV\u201d.<\/p>\n<\/div>\n<\/div>\n<\/div>\n<\/div>","protected":false},"excerpt":{"rendered":"<p>The Biden administration is looking to ban the import of connected vehicles and associated technologies from China and Russia, calling them the \u201ccountries of security concerns.\u201d The prohibiting rule has been proposed by the Department of Commerce in favor of, as the proposal points out, protecting the US from the national security risks associated with [&hellip;]<\/p>\n","protected":false},"author":0,"featured_media":342,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[3],"tags":[],"class_list":["post-341","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-education"],"_links":{"self":[{"href":"https:\/\/cybersecurityinfocus.com\/index.php?rest_route=\/wp\/v2\/posts\/341"}],"collection":[{"href":"https:\/\/cybersecurityinfocus.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/cybersecurityinfocus.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"replies":[{"embeddable":true,"href":"https:\/\/cybersecurityinfocus.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=341"}],"version-history":[{"count":0,"href":"https:\/\/cybersecurityinfocus.com\/index.php?rest_route=\/wp\/v2\/posts\/341\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/cybersecurityinfocus.com\/index.php?rest_route=\/wp\/v2\/media\/342"}],"wp:attachment":[{"href":"https:\/\/cybersecurityinfocus.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=341"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/cybersecurityinfocus.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=341"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/cybersecurityinfocus.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=341"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}