In one of the coolest and more outrageous repair stories in quite some time, three white-hat hackers helped a regional rail company in southwest Poland unbrick a train that had been artificially rendered inoperable by the train’s manufacturer after an independent maintenance company worked on it. The train’s manufacturer is now threatening to sue the hackers who were hired by the independent repair company to fix it.

After breaking trains simply because an independent repair shop had worked on them, NEWAG is now demanding that trains fixed by hackers be removed from service.

  • BloodSlut@lemmy.world
    link
    fedilink
    English
    arrow-up
    280
    arrow-down
    2
    ·
    8 months ago

    “We didn’t add a kill switch to our trains to force the use of our maintenance service, but fuck the hackers that removed the kill switch we didn’t implement, and the trains that were hacked and don’t have the kill switch we didn’t add should be removed from service.”

  • Andy@slrpnk.net
    link
    fedilink
    English
    arrow-up
    172
    ·
    8 months ago

    That’s awesome. Man, fuck that company. Bricking a train? Outrageous.

    • Bizarroland@kbin.social
      link
      fedilink
      arrow-up
      83
      ·
      8 months ago

      Poland ought to ban that company from ever working or operating or selling any products inside of its country and any trains made by that company that are not currently owned by Poland should be prevented from traveling on the tracks that cross through Poland.

      • SpookyUnderwear@eviltoast.org
        link
        fedilink
        English
        arrow-up
        32
        ·
        8 months ago

        This is the kind of government intervention I can get behind. This story is so outrageous, it’s hard to believe it’s true.

      • BearOfaTime@lemm.ee
        link
        fedilink
        English
        arrow-up
        8
        arrow-down
        1
        ·
        8 months ago

        Maybe make it the entire executive and senior management, rather than the company.

        • Maggoty@lemmy.world
          link
          fedilink
          English
          arrow-up
          33
          ·
          8 months ago

          They just swore in the new Cabinet today. They still have a far right President and Judiciary to contend with but the legislature is a coalition of centrists and leftists now.

          • Aceticon@lemmy.world
            link
            fedilink
            English
            arrow-up
            2
            ·
            edit-2
            8 months ago

            I was wondering why Orban “left the room” when the EU Council voted for initiating membership negotiations with Ukraine (thus abstaining) rather than vote against it (and thus veto it) and thought that maybe he didn’t have Poland covering his back anymore (in the sense of stopping later reprisals if he blocked it), at least when it came to his pro-Russia posture.

            Now given that change in Poland, I’m thinking it’s a much more far reaching thing and Hungary is now much closer to have their rights suspended as an EU Member.

            • Maggoty@lemmy.world
              link
              fedilink
              English
              arrow-up
              2
              ·
              edit-2
              8 months ago

              Yes, however there is still a natural resistance to kicking anyone out of a political entity. Just because nobody wants to start those conversations for fear of their name getting floated.

      • psud@aussie.zone
        link
        fedilink
        English
        arrow-up
        4
        ·
        8 months ago

        I feel like train operators will have heard of this, and will not be accepting that company’s tenders

      • vinhill@feddit.de
        link
        fedilink
        English
        arrow-up
        1
        ·
        8 months ago

        Realistically, that would be quite an overreaction and the corporation does have valuable knowledge and skill in creating trains. But how great it would be if this were to cause open source code to be a requirement…

    • Hamartiogonic@sopuli.xyz
      link
      fedilink
      English
      arrow-up
      9
      arrow-down
      2
      ·
      8 months ago

      Trump and the whole Brexit circus have set a very high bar, but somehow someone still manages to produce quality comedy.

  • Syo@kbin.social
    link
    fedilink
    arrow-up
    92
    ·
    8 months ago

    Steam engine breaks, you can fix it.

    Steam engine with digital circuit breaks, you’re a hacker, a pirate. DRM was a mistake.

    • Player2@sopuli.xyz
      link
      fedilink
      English
      arrow-up
      51
      arrow-down
      1
      ·
      8 months ago

      But how else could companies make more money off of something you already paid for? Will someone think of the shareholders‽

    • Aceticon@lemmy.world
      link
      fedilink
      English
      arrow-up
      3
      ·
      8 months ago

      If you’re allowed to do any maintenance you want on the physical components of something you own, then you should be allowed to do any maintenance you want on the software components of something you own.

      It’s not hacking (in the sense of “unauthorized intrusion”) if you own it or have authorization to do it from the owner of it.

  • helenslunch@feddit.nl
    link
    fedilink
    English
    arrow-up
    85
    ·
    8 months ago

    This reminds me of the hacked McDonalds ice cream machines. Except the shitty manufacturers won that one.

  • WashedOver@lemmy.ca
    link
    fedilink
    English
    arrow-up
    81
    ·
    8 months ago

    I wonder if they were taking notes from John Deere and the automotive industry or will it be the reverse here soon?

    Just imagine all these vehicles that could be bricked for not going back to the stealerships for outrageous prices on parts and incompetent service.

    Also the vehicles that could be disabled for not paying for device protection plan that allows your vehicle to operate safely. It would be a shame if your vehicle stopped working on your way to work or the hospital.

    I suspect Tesla, BMW, and John Deere are the closest to this reality.

    I sure hope the government doesn’t help with another great cash for clunkers national program to get rid of more cars too old for these measures. Sure is a great way to drive new car sales though…

    • Maggoty@lemmy.world
      link
      fedilink
      English
      arrow-up
      23
      ·
      8 months ago

      Oh don’t count GM and a Ford out of it. They’re already kicking android auto and Apple car to the curb so they can control more stuff and get access to more data. The savvier they get the closer that comes to reality.

      Of course, by the end of our lives you won’t own a car at all. You’ll subscribe to a car company that will act like a hybrid ride share and rental program. Commutes will be on a rideshare basis and you’ll be able to rent a car for a weekend road trip.

      • WashedOver@lemmy.ca
        link
        fedilink
        English
        arrow-up
        14
        ·
        edit-2
        8 months ago

        I just heard about GM this morning in my tech news. I didn’t realize that about Ford too.

        I’ve drawn a line in the sand with my vehicles at about 2011 for tech. I love tech and I love cars but just not into the current versions of everything being touch screen controls.

        Give me knobs for climate controls, gear shifters, and gauges for the rest. They don’t need all of these computer systems that fail or become outdated as soon as they are released like the manufacturer’s nav systems. We also don’t need them to stop working completely because a sensor failed and can only be replaced by the dealer.

        My phone in a holder can be the smartest part of the car for me thanks.

        • BearOfaTime@lemm.ee
          link
          fedilink
          English
          arrow-up
          6
          arrow-down
          1
          ·
          8 months ago

          Stop reading my mind.

          You can pry my older cars from my cold, dead, hand.

          • WashedOver@lemmy.ca
            link
            fedilink
            English
            arrow-up
            5
            ·
            edit-2
            8 months ago

            I’m glad to hear that. Often I’ve driven rental cars and *last time I struggled to find the gear shifter which was replaced by buttons on the dash.

            I’ve also seen just a video of a Tesla only new driver struggle to drive a ICE car because it had a gear shifter and didn’t automatically brake. I’m feeling like a dinosaur now…

    • Hamartiogonic@sopuli.xyz
      link
      fedilink
      English
      arrow-up
      8
      ·
      8 months ago

      If the manufacturer can stop your trains, then obviously anyone with the necessary hacking skills can do it too. Certain governments might be very interested in tampering with the logistics of another country.

    • helenslunch@feddit.nl
      link
      fedilink
      English
      arrow-up
      1
      ·
      8 months ago

      John Deere was hardly the first. We introduced legislation to regulate the automotive industry in 1994.

  • roguetrick@kbin.social
    link
    fedilink
    arrow-up
    76
    ·
    edit-2
    8 months ago

    SPS became desperate and Googled “Polish hackers” and came across a group called Dragon Sector, a reverse-engineering team made up of white hat hackers.

    Hilarious. I hope 404 continues with this level of high quality journalism.

    Dragon sector, who they hired, is a security capture the flag team.

    https://dragonsector.pl/

    Edit: Socials of those who worked on it

    https://social.hackerspace.pl/@q3k
    https://infosec.exchange/@mrtick
    https://infosec.exchange/@redford

    • SCB@lemmy.world
      link
      fedilink
      English
      arrow-up
      10
      ·
      edit-2
      8 months ago

      Thank you! Came here to ask if anyone had one source with the whole story. This keeps trickling out as it evolves.

      Edit: this story is considerably weirder than I expected, and I was already expecting some weird shit.

      Begs the question: How is any of this legal?

      • Ruscal@sh.itjust.works
        link
        fedilink
        English
        arrow-up
        4
        ·
        8 months ago

        I would assume it is not, UE has some strict rules about fair competition, but the problem is to prove that in the court. Newag is arguing that the hacked and reverse engineered code is not the code they have. Probably in the meantime they run the cleaning protocol in the company…
        But company’s public image will hopefully suffer from the story, maybe at least they loose in eyes of potential buyers.

  • yamanii@lemmy.world
    link
    fedilink
    English
    arrow-up
    59
    ·
    8 months ago

    The anti-circumvention clause is being abused for some years now, it’s disgusting.

  • Dio9sys@lemmy.blahaj.zone
    link
    fedilink
    English
    arrow-up
    42
    ·
    8 months ago

    I like how, instead of recognizing that they got caught, now the train manufacturer is claiming this is some kind of dark PR strategy.

    If it is, then please show the public that it’s a dark PR strategy by explaining the hidden unlock codes and the DRM code!

    • DuckOverload@lemmy.world
      link
      fedilink
      English
      arrow-up
      27
      arrow-down
      1
      ·
      8 months ago

      I think this is pretty cool. Sure, capitalists are gonna capitalist, but here we have subversive moves in a positive direction.

      • EdibleFriend@lemmy.world
        link
        fedilink
        English
        arrow-up
        13
        ·
        8 months ago

        Oh yeah what the people did to get around this is fucking awesome I do love that side of this story don’t get me wrong.

  • RememberTheApollo_@lemmy.world
    link
    fedilink
    English
    arrow-up
    27
    arrow-down
    1
    ·
    8 months ago

    If they required the trains to be serviced by manufacturer they should have written it into a mandatory service contract at time of sales.