Skip to main content

Researchers find way to hack Panasonic’s in-flight entertainment systems

researchers hack panasonic in flight avionics
Panasonic Avionics
Researchers working for the cybersecurity consultancy group IOActive discovered some troubling vulnerabilities in Panasonic Avionics’ in-flight entertainment systems. The company’s avionics subsidiary supplies hardware to 13 different airlines: Aerolineas Argentinas, Air France, American Airlines, Emirates, Etihad Airways, Finnair, Iberia, KLM, Qatar Airways, Scandinavian Airlines, Singapore Airlines, United Airlines, and Virgin America.

“I discovered I could access debug codes directly from a Panasonic in-flight display,” IOActive’s Ruben Santamarta said in a statement. “A subsequent internet search allowed me to discover hundreds of publicly available firmware updates for multiple major airlines, which was quite alarming.”

Santamarta performed further analysis in an attempt to find out what hackers could accomplish by interfering with an avionics device. He found it was possible to manipulate what was being displayed on the screen, to send out fake announcements over the PA system, and to control cabin lights and the reclining seats in the first-class section of the plane. There was also evidence that credit card details belonging to frequent flyers and VIP members could be stolen in this manner.

However, all of these attacks would pale in comparison to the potential for criminals to take control of the aircraft itself. Fortunately, this is impossible in most circumstances, according to a report from Tech Spot.

Most airlines keep the aircraft control domain physically isolated from the passenger entertainment domain, which means that there is no way to use in-flight entertainment hardware to interfere with the vessel’s controls. However, Santamarta states this is not always the case and urges airlines to be “incredibly vigilant” about this kind of threat.

IOActive reported these security flaws to Panasonic in March 2015 and has waited until now to release the information to the public so that the company would have time to make improvements. This is not the first time that the consultancy firm has shed light on a potential security breach — it played a key role in publicizing the high-profile Jeep hacking risk that led to a major recall in 2015.

Editors' Recommendations

Brad Jones
Former Digital Trends Contributor
Brad is an English-born writer currently splitting his time between Edinburgh and Pennsylvania. You can find him on Twitter…
Lyft finds a way to help its drivers earn during lockdown
uber settles driver background check case man driving in car the city ride share lyft getaround zipcar

The coronavirus has impacted just about every industry out there, including ridesharing. Trip numbers have tanked as companies shut up shop and people stay at home under lockdown orders, a situation that threatened to leave countless drivers twiddling their thumbs, wondering when life will return to normal.

In a bid to provide its drivers with alternative income opportunities, Lyft this week announced the launch of Essential Deliveries, a new pilot initiative geared toward transporting important items for government agencies, local non-profits, businesses, and health care organizations. Consignments can include everything from meals, groceries, and home necessities, to hygiene products and life-sustaining medical supplies.

Read more
Pedestrian detection systems don’t work most of the time, AAA study finds
pedestrian detection systems dont work at night aaa study says volvo

If you can't see a pedestrian, don't expect your car to either, says AAA. The organization recently conducted a study on pedestrian-detection systems, which are supposed to spot people walking into the path of a car and warn the driver or, in some cases, apply the brakes. But AAA found these systems don't work reliably at night -- exactly when most pedestrian fatalities occur, the organization noted.

AAA tested four sedans -- a 2019 Chevrolet Malibu, 2019 Honda Accord, 2019 Toyota Camry, and a Tesla Model 3 -- equipped with both pedestrian detection and autonomous emergency braking, which automatically applies the brakes if the car believes a collision is imminent. Tests were conducted on a closed course with "simulated pedestrian targets," according to AAA. Researchers conducted tests in both day and nighttime conditions, at varying speeds, and with different behaviors from the fake pedestrians.

Read more
In the zoom-versus-speed debate, Panasonic’s 10-25mm f/1.7 gives you both
panasonic lecia 10 25 f17 news leica dg 25mm announced

Panasonic is tallying up the "world's firsts" in a slew of announcements made Friday, May 31. In addition to revealing the first full-frame 6K camera in the Lumix S1H, it also announced a new lens for its smaller Micro Four Thirds system, the Leica DG Vario-Summilux 10-25mm f/1.7. The zoom lens is designed with both still photographers and video shooters in mind, and is the first standard zoom to feature a constant f/1.7 aperture.

Impressive as it is, such a combination of wide aperture and zoom range is certainly easier to achieve on the Micro Four Thirds format compared to lenses for larger full-frame sensors. The 2.5x zoom offers a 20-50mm full-frame equivalent focal length, while the f/1.7 aperture is equivalent to f/3.4 on full-frame. Still, it is by far the fastest zoom lens to grace the Micro Four Thirds format thus far, while also offering a unique focal range not quite matched by other zooms.

Read more