Norway Found A Real Bus Cyber Risk. It Didn’t Show It Was Chinese.
AI-summarised brief · reviewed before publication
Norway’s transit authority Ruter tested a Chinese Yutong electric bus for cybersecurity vulnerabilities. The investigation revealed a real remote‑access path that could potentially disrupt bus operations, but no evidence that the bus could serve as a covert surveillance platform near the intelligence agency’s Lutvann facility. A 2022 European VDL bus, with limited connectivity, showed no such access. The comparison could not attribute the risk to the bus’s Chinese origin, as the control vehicle lacked comparable technology. The findings highlighted the need for clearer controls on manufacturer‑controlled connectivity.
💡 Why It Matters
- · The study underscores that remote‑diagnostics in modern buses can pose operational risks regardless of manufacturer origin.
- · It calls for stricter oversight of connectivity features in public transit vehicles.