DVWA for Automotive
Damn Vulnerable Vehicle Application (DVVA) is some vehicle application that is damn vulnerable which recompose from real pentest case.
The aim of DVVA is to practice some of the most common vehicle vulnerabilities.
Simulate real vulnerabilities
| Status | Exercise | Target | Linked |
|---|---|---|---|
| ✅ | bosch headunit root | Head Unit | Rooting Bosch lcn2kai Headunit |
| ⏳ | Tesla ADB Bypass | TBOX | Tesla Telematics Control Unit - ADB Auth Bypass |
| 🔐 | SiriusXM IDOR | TSP | SiriusXM IDOR exposed other vehicle token |
| 🔐 | Ebbe | Charging Pile | Multiple Vulnerabilities in Bender/Ebee Charge Controller |
| 🔐 | GARO | Charging Pile | Multiple Vulnerabilities in GARO Wallbox |
inpired by DVWA