Close Menu
Technology Mag

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot
    Apple’s new M5 Max feels like a huge upgrade if you bought your laptop three years ago

    Apple’s new M5 Max feels like a huge upgrade if you bought your laptop three years ago

    March 9, 2026
    Everything from the last week of everything is gambling now

    Everything from the last week of everything is gambling now

    March 9, 2026
    Employees across OpenAI and Google support Anthropic’s lawsuit against the Pentagon

    Employees across OpenAI and Google support Anthropic’s lawsuit against the Pentagon

    March 9, 2026
    Facebook X (Twitter) Instagram
    Subscribe
    Technology Mag
    Facebook X (Twitter) Instagram YouTube
    • Home
    • News
    • Business
    • Games
    • Gear
    • Reviews
    • Science
    • Security
    • Trending
    • Press Release
    Technology Mag
    Home » Want to Win a Bike Race? Hack Your Rival’s Wireless Shifters
    Security

    Want to Win a Bike Race? Hack Your Rival’s Wireless Shifters

    News RoomBy News RoomAugust 15, 20243 Mins Read
    Facebook Twitter Pinterest LinkedIn Reddit WhatsApp Email
    Want to Win a Bike Race? Hack Your Rival’s Wireless Shifters

    Shimano says it has provided that firmware update to the professional cycling teams that use its components. But it says its fix won’t be more widely available until late August and declined to explain exactly how its update prevents the attacks the researchers identified. “We can share that this update is intended to improve wireless transmission across Shimano Di2 component platforms,” the company writes. “We cannot share details on the exact fix at this moment, for obvious security reasons.”

    Exactly how the patch will be deployed to customers isn’t quite clear either. The company writes that “riders can perform a firmware update on the rear derailleur” using Shimano’s E-TUBE Cyclist smartphone app. But it fails to mention whether the fix will apply to the front derailleur. “More information about this process and steps riders can take to update their Di2 systems will be available shortly,” it concludes.

    While Shimano’s patching plan leaves a week or two-week gap between the researchers’ public presentation of their bike-hacking technique at Usenix and the broad rollout of a fix for customers, UCSD professor Fernandes argues it’s unlikely that average riders will be targeted with their technique—at least not immediately. “I find it hard to believe that someone will want to launch such an attack on me during my Saturday group ride,” Fernandes says.

    Professional cyclists, however, should be sure to implement the early patch that Shimano has already provided, the researchers say. They note, too, that other brands of wireless shifters may be vulnerable to similar hacking techniques: They focused on Shimano only because it has the largest market share.

    In the ruthless world of competitive cycling, which has been rocked to its foundations in recent decades by doping scandals, they argue that rivals hacking each others’ shifters is not at all a far-fetched scenario. “This is, in our opinion, a different kind of doping,” says Fernandes. “It leaves no trace, and it allows you to cheat in the sport.”

    More broadly, they argue that their radio-based bike hacking research is a cautionary tale about the temptation to add wireless electronic features to every technology, from garage doors to cars to bicycles, and the unintended consequences of that long-term trend—namely, that they’ve all become vulnerable to forms of replay and jamming attacks of the kind that Shimano is now scrambling to fix.

    “This is a repeating pattern,” says Northeastern’s Ranganathan, who has also developed solutions for replay attacks on cars’ keyless entry systems. “When manufacturers start putting in wireless features in their products, it has an impact on real-world control systems. And that can cause real physical harm.”

    Corrected at 8/14/2024 at 10:00 am ET to note the correct software-defined radio used in the researchers’ experimental setup and remove an incorrect reference to Bluetooth.

    Share. Facebook Twitter Pinterest LinkedIn WhatsApp Reddit Email
    Previous ArticleHP OmniBook X 14 review: a barely disguised business laptop with excellent battery life
    Next Article What’s next for KOSA, the controversial ‘child safety’ bill that could change online speech

    Related Posts

    Cloudflare Has Blocked 416 Billion AI Bot Requests Since July 1

    Cloudflare Has Blocked 416 Billion AI Bot Requests Since July 1

    December 6, 2025
    The Louisiana Department of Wildlife and Fisheries Is Detaining People for ICE

    The Louisiana Department of Wildlife and Fisheries Is Detaining People for ICE

    December 5, 2025
    Your Data Might Determine How Much You Pay for Eggs

    Your Data Might Determine How Much You Pay for Eggs

    December 4, 2025
    Russia Wants This Mega Missile to Intimidate the West, but It Keeps Crashing

    Russia Wants This Mega Missile to Intimidate the West, but It Keeps Crashing

    December 4, 2025
    This Hacker Conference Installed a Literal Antivirus Monitoring System

    This Hacker Conference Installed a Literal Antivirus Monitoring System

    December 4, 2025
    Flock Uses Overseas Gig Workers to Build Its Surveillance AI

    Flock Uses Overseas Gig Workers to Build Its Surveillance AI

    December 4, 2025
    Our Picks
    Everything from the last week of everything is gambling now

    Everything from the last week of everything is gambling now

    March 9, 2026
    Employees across OpenAI and Google support Anthropic’s lawsuit against the Pentagon

    Employees across OpenAI and Google support Anthropic’s lawsuit against the Pentagon

    March 9, 2026
    One of this rugged phone’s cameras is a pop-out action cam

    One of this rugged phone’s cameras is a pop-out action cam

    March 9, 2026
    Yashica’s new retro point-and-shoot revival sounds surprisingly capable for 0

    Yashica’s new retro point-and-shoot revival sounds surprisingly capable for $100

    March 9, 2026
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo
    Don't Miss
    Google’s latest Pixel Watches have fallen to their lowest prices ever News

    Google’s latest Pixel Watches have fallen to their lowest prices ever

    By News RoomMarch 9, 2026

    With longer days and warmer weather on the way, it’s a good time to take…

    Donut Lab says latest test proves its solid-state battery isn’t a supercapacitor

    Donut Lab says latest test proves its solid-state battery isn’t a supercapacitor

    March 9, 2026
    X says you can block Grok from editing your photos

    X says you can block Grok from editing your photos

    March 9, 2026
    The iPhone 17E is good, but you probably shouldn’t buy it

    The iPhone 17E is good, but you probably shouldn’t buy it

    March 9, 2026
    Facebook X (Twitter) Instagram Pinterest
    • Privacy Policy
    • Terms of use
    • Advertise
    • Contact
    © 2026 Technology Mag. All Rights Reserved.

    Type above and press Enter to search. Press Esc to cancel.