Two security researchers discovered a security vulnerability in Subaru’s Starlink-connected vehicles last year that gave them “unrestricted targeted access to all vehicles and customer accounts” across the U.S., Canada, and Japan, according to a Wired report.
The researchers, Sam Curry and Shubham Shah, alerted the Japanese automaker to the flaws in November and they were quickly fixed. Subaru told Wired that “after being notified by independent security researchers, [Subaru] discovered a vulnerability in its Starlink service that could potentially allow a third party to access Starlink accounts. The vulnerability was immediately closed and no customer information was ever accessed without authorization.”
The researchers said that a hacker who only knew the car owner’s last name and ZIP code, email address, phone number, or license plate could remotely start, stop, lock, unlock, and retrieve the current vehicle, retrieve any vehicle’s complete location history from the past year, and find personally identifiable information of any customer.
Curry and Shah said that similar web-based flaws have been found in several other carmakers, including Kia, Honda, and Toyota.
While Curry and Shah acknowledged the security fixes, they warned that simply patching security updates after issues were found isn’t enough to remedy the more pervasive issue of privacy in the automotive industry. And even if those vulnerabilities are all remedied, employees still have access to location data.
“You can retrieve at least a year’s worth of location history for the car, where it’s pinged precisely, sometimes multiple times a day,” Curry told Wired. “Whether somebody’s cheating on their wife or getting an abortion or part of some political group, there are a million scenarios where you could weaponize this against someone.”
Login to add comment
Other posts in this group

For years, I’ve had a secret ambition tucked away somewhere near the back of my brain. It was to write a simple note-taking app—one that wouldn’t be overwhelmed with features and that would reflec
AI tools are everywhere, changing the way we work, communicate, and even create. But which tools are actually useful? And how can users integrate

The way Bran Ferren sees it, the future of warfare depends as much on creativity as it does on raw firepower.
The former head of research and development at Walt Disney Imagineering—the

The nonstop cavalcade of announcements in the AI world has created a kind of reality distortion field. There is so much bu

Google released its new Gemini 2.5 Pro Experimental AI model late last month,

TikTok is shutting down TikTok Notes—wait, you didn’t even know it existed? Well, that explains a lot.
TikTok Notes, the platform’s short-lived attempt to take on Instagram (just as Inst

Influencing has a major pay gap, and it’s not what you might expect.
A new report from Collabstr, based on over 15,0