• Home
  • Latest
  • Fortune 500
  • Finance
  • Tech
  • Leadership
  • Lifestyle
  • Rankings
  • Multimedia
TechCybersecurity

General Motors Asks Hackers to Hack Their Cars

By
Kirsten Korosec
Kirsten Korosec
Down Arrow Button Icon
By
Kirsten Korosec
Kirsten Korosec
Down Arrow Button Icon
January 11, 2016, 10:00 AM ET
A customer talks with a sales person near a Chevrolet truck on display in the showroom of a General Motors Co. dealership in Peoria, Illinois, U.S.
A customer talks with a sales person near a Chevrolet truck on display in the showroom of a General Motors Co. dealership in Peoria, Illinois, U.S.Photograph by Daniel Acker—Bloomberg via Getty Images

By the end of this year, General Motors will have more than 12 million connected cars on the road around the world. That’s a potentially huge cybersecurity hole if hackers ever found and chose to exploit any systems connected to the Internet.

Meanwhile, earlier this month General Motors quietly launched a program to connect the company with white hat hackers. Hackers who find security bugs or vulnerabilities can inform GM through a secure website portal hosted by HackerOne, a venture-backed security startup based in San Francisco.

The new portal is accessible through GM and from HackerOne’s directory.

“We’re putting a lot of technology into our cars,” says GM cybersecurity chief Jeff Massimilla. “There’s a responsibility obviously to put an appropriate level of security with those technologies.”

For now, white hat hackers (or researchers as they’re sometimes called) who notify GM of a potential security flaw will not be rewarded, but that could change, Massimilla says.

SIGN UP: Get Data Sheet, Fortune’s daily newsletter about the business of technology.

There are multiple entry points for hackers to gain remote access to a connected car, including through in-car entertainment, navigation, and advanced driver assistance systems.

White hat hackers Charlie Miller and Chris Valesek (now security lead at Uber Advanced Technologies Center) demonstrated in 2015 just how easy it is to hack a vehicle when they remotely took control of a Jeep Cherokee. The Jeep Cherokee hacking not only showed the weaknesses behind the SUV’s digital defenses, but also raised questions about what, if anything, other connected car manufacturers are doing to protect their vehicles.

A week later, hacker Samy Kamkar posted a video on YouTube that described a security flaw found in a mobile app for General Motors’ OnStar vehicle communications system. Kamkar built a device that could intercept communications between the OnStar RemoteLink mobile app and the OnStar service, allowing him to locate, unlock, and remote-start vehicles. The device could also give an attacker a car’s location, make, and model, as well as the power to unlock and remote-start the car.

GM fixed the problem after Kamkar reached out to the automaker.

WATCH IT: General Motors CEO Mary Barra talks about rebuilding consumer trust

“There wasn’t one single event that prompted this action,”Massimilla says. “We have been maturing our cybersecurity program within GM for sometime now. And as we’ve matured, we have had some interaction with researchers.”

GM’s contact with researchers has been positive so far, Massimilla added. “We just wanted to make it easier to interact with them.” GM isn’t the first major automaker to launch such a program. The considerably smaller all-electric automaker Tesla Motors has a bug bounty program, which issues rewards between $1,000 and $10,000.

About the Author
By Kirsten Korosec
See full bioRight Arrow Button Icon

Latest in Tech

InvestingStock
There have been head fakes before, but this time may be different as the latest stock rotation out of AI is just getting started, analysts say
By Jason MaDecember 13, 2025
38 minutes ago
Politicsdavid sacks
Can there be competency without conflict in Washington?
By Alyson ShontellDecember 13, 2025
1 hour ago
InnovationRobots
Even in Silicon Valley, skepticism looms over robots, while ‘China has certainly a lot more momentum on humanoids’
By Matt O'Brien and The Associated PressDecember 13, 2025
3 hours ago
Sarandos
Arts & EntertainmentM&A
It’s a sequel, it’s a remake, it’s a reboot: Lawyers grow wistful for old corporate rumbles as Paramount, Netflix fight for Warner
By Nick LichtenbergDecember 13, 2025
7 hours ago
Oracle chairman of the board and chief technology officer Larry Ellison delivers a keynote address during the 2019 Oracle OpenWorld on September 16, 2019 in San Francisco, California.
AIOracle
Oracle’s collapsing stock shows the AI boom is running into two hard limits: physics and debt markets
By Eva RoytburgDecember 13, 2025
8 hours ago
robots
InnovationRobots
‘The question is really just how long it will take’: Over 2,000 gather at Humanoids Summit to meet the robots who may take their jobs someday
By Matt O'Brien and The Associated PressDecember 12, 2025
22 hours ago

Most Popular

placeholder alt text
Economy
Tariffs are taxes and they were used to finance the federal government until the 1913 income tax. A top economist breaks it down
By Kent JonesDecember 12, 2025
1 day ago
placeholder alt text
Success
Apple cofounder Ronald Wayne sold his 10% stake for $800 in 1976—today it’d be worth up to $400 billion
By Preston ForeDecember 12, 2025
1 day ago
placeholder alt text
Success
40% of Stanford undergrads receive disability accommodations—but it’s become a college-wide phenomenon as Gen Z try to succeed in the current climate
By Preston ForeDecember 12, 2025
1 day ago
placeholder alt text
Economy
For the first time since Trump’s tariff rollout, import tax revenue has fallen, threatening his lofty plans to slash the $38 trillion national debt
By Sasha RogelbergDecember 12, 2025
23 hours ago
placeholder alt text
Economy
The Fed just ‘Trump-proofed’ itself with a unanimous move to preempt a potential leadership shake-up
By Jason MaDecember 12, 2025
21 hours ago
placeholder alt text
Success
At 18, doctors gave him three hours to live. He played video games from his hospital bed—and now, he’s built a $10 million-a-year video game studio
By Preston ForeDecember 10, 2025
3 days ago
Rankings
  • 100 Best Companies
  • Fortune 500
  • Global 500
  • Fortune 500 Europe
  • Most Powerful Women
  • Future 50
  • World’s Most Admired Companies
  • See All Rankings
Sections
  • Finance
  • Leadership
  • Success
  • Tech
  • Asia
  • Europe
  • Environment
  • Fortune Crypto
  • Health
  • Retail
  • Lifestyle
  • Politics
  • Newsletters
  • Magazine
  • Features
  • Commentary
  • Mpw
  • CEO Initiative
  • Conferences
  • Personal Finance
  • Education
Customer Support
  • Frequently Asked Questions
  • Customer Service Portal
  • Privacy Policy
  • Terms Of Use
  • Single Issues For Purchase
  • International Print
Commercial Services
  • Advertising
  • Fortune Brand Studio
  • Fortune Analytics
  • Fortune Conferences
  • Business Development
About Us
  • About Us
  • Editorial Calendar
  • Press Center
  • Work At Fortune
  • Diversity And Inclusion
  • Terms And Conditions
  • Site Map

© 2025 Fortune Media IP Limited. All Rights Reserved. Use of this site constitutes acceptance of our Terms of Use and Privacy Policy | CA Notice at Collection and Privacy Notice | Do Not Sell/Share My Personal Information
FORTUNE is a trademark of Fortune Media IP Limited, registered in the U.S. and other countries. FORTUNE may receive compensation for some links to products and services on this website. Offers may be subject to change without notice.