Tag Archive for: charging

New Flaws Expose EVlink Electric Vehicle Charging Stations to Remote Hacking


Schneider Electric has patched several new vulnerabilities that expose its EVlink electric vehicle charging stations to remote hacker attacks.

Schneider announced the availability of patches on December 14, when it urged customers to immediately apply patches or mitigations. The flaws have been found to impact EVlink City (EVC1S22P4 and EVC1S7P4), Parking (EVW2, EVF2 and EVP2PE) and Smart Wallbox (EVB1A) devices, as well as some products that have reached end of life.

The vendor has credited researcher Tony Nasr for finding a total of seven vulnerabilities in these charging stations, including one critical and five high-severity issues.

The security holes include cross-site request forgery (CSRF) and cross-site scripting (XSS) bugs that can be exploited to carry out actions on behalf of a legitimate user, and a weakness that can be leveraged to gain access to a charging station’s web interface via brute-force attacks. The most serious issue — based on its CVSS score of 9.3 — is a server-side request forgery (SSRF) vulnerability.

EVlink electric vehicle charging station vulnerabilitiesSchneider warned that failure to take action could lead to “tampering and compromise of the charging station’s settings and accounts.”

“Such tampering could lead to things like denial of service attacks, which could result in unauthorized use of the charging station, service interruptions, failure to send charging data records to the supervision system and the modification and disclosure of the charging station’s configuration,” the industrial giant wrote in its advisory.

The company noted that exploitation of the vulnerabilities requires physical access to the system’s internal communication port, but admitted that attacks can also be launched from the local network and even the internet if the charging station is accessible from the web.

“The exploitation of Internet-connected charging stations does not require having access to the LAN, therefore making the attack vector very powerful and effective,” Nasr told SecurityWeek. “In this case, the adversary would perform Internet-wide scans to search for viable EVCS [electric vehicle charging stations] before attempting to exploit their vulnerabilities. However, it should be noted…

Source…

No Charger in the Box? Everything You Need to Know About Charging the iPhone 12 – PCMag

  1. No Charger in the Box? Everything You Need to Know About Charging the iPhone 12  PCMag
  2. No charger in the box? Everything you need to know…  AlKhaleej Today
  3. New photos and videos show MagSafe Charger and cases arriving ahead of iPhone 12  9to5Mac
  4. iPhone 12 and 12 Pro review: designed for a 5G future that we’re still waiting for  Telegraph.co.uk
  5. Hands-On With Apple’s MagSafe Charger for iPhone 12  MacRumors
  6. View Full Coverage on read more

“Don’t Plug Your Phone into a Charger You Don’t Own” – read more

IPhone 12 doesn’t come with a plug for charging — here’s what you need to buy – CNBC

  1. IPhone 12 doesn’t come with a plug for charging — here’s what you need to buy  CNBC
  2. iPhone 12 accessories: Where to buy cases, screen protectors, chargers, and more  USA TODAY
  3. The iPhone 12 Ships Without a Charger. Will It Curb E-Waste?  WIRED
  4. The Best Power Adapters & Chargers for Your iPhone 12, 12 Mini, 12 Pro, or 12 Pro Max  Gadget Hacks
  5. Apple has made a big mess of the iPhone 12’s USB-C charging  Fast Company
  6. View Full Coverage on read more

“Don’t Plug Your Phone into a Charger You Don’t Own” – read more

How Home Electric Car Charging Works | US News & World Report – U.S. News & World Report

How Home Electric Car Charging Works | US News & World Report  U.S. News & World Report
“Don’t Plug Your Phone into a Charger You Don’t Own” – read more