Researchers Exposed Remote Hacking Risks in BYD Shark 6

A vulnerability in the plug-in hybrid allows remote manipulation of hardware like door locks and wipers.

Updated on Oct. 5, 2026 in Cybersecurity

A close-up view of an intricate automotive electronic control unit module with detailed copper circuits and metallic components.
Security researchers identified remote hacking vulnerabilities in the BYD Shark 6, allowing unauthorized access to critical hardware systems like locks and windshield wipers. AI Illustration. Upload story photo >

Live Poll

Do you trust that your vehicle's software and connected systems are secure from remote hacking?

Cybersecurity specialists have discovered remote hacking vulnerabilities in the BYD Shark 6 plug-in hybrid vehicle. The flaw enabled unauthorized access to control vehicle door locks, windshield wipers, and headlights.

Why it matters

This discovery highlights the persistent security risks inherent in the increasingly connected systems of modern electric vehicles. It serves as a reminder for owners to prioritize software updates to mitigate potential remote access threats.

The identified vulnerability allowed for remote command execution across several vehicle control systems. Specialists confirmed that the exploit granted remote control over essential hardware components, including the vehicle's door locks, headlights, and windshield wipers.

The players

BYD

A global manufacturer specializing in electric and plug-in hybrid vehicles with a highly integrated software-hardware stack.

The details

Security researchers accessed the BYD Shark 6 by targeting weaknesses in the vehicle's connected systems—the internal software network that manages communication between the car and external services. By exploiting these entry points, the researchers gained unauthorized control over electronic control units, which are the embedded systems that manage automotive electrical components. This demonstration shows how connected interfaces in modern EVs can act as attack surfaces for unauthorized hardware manipulation.

Timeline

  1. October 5, 2026: Publication of the report on EV hacking risks.

The Tech Race

This incident follows a long pattern set by the 2015 Jeep Cherokee remote hack, proving that connected vehicle architectures remain a primary target for security researchers. It highlights the ongoing struggle between rapid feature deployment and the hardening of automotive software stacks against external interference.

Owners of the BYD Shark 6 should immediately verify their software status and install the manufacturer's released patch. These security updates are essential to close the identified gaps and protect against unauthorized remote manipulation of vehicle hardware.

The takeaway

Vehicle security relies on proactive software maintenance, as manufacturers continue to patch legacy weaknesses in connected infotainment and control systems. Owners should monitor manufacturer communications for further updates regarding vehicle data security practices.

Further reading

For more context on current threats to connected mobility, explore our Cybersecurity section.

Source note: This article includes information reported by EWN Traffic.

Live Poll

Do you trust that your vehicle's software and connected systems are secure from remote hacking?