• JustEnoughDucks@feddit.nl
    link
    fedilink
    arrow-up
    0
    ·
    25 days ago

    A Volkswagen id4 was the best choice I had from work (Belgian companies give company cars for personal use as perks because of tax benefits).

    I completely disagreed to all terms involving internet access in the vehicle, but I have no doubt they are tracking me without my consent too…

    • atrielienz@lemmy.world
      link
      fedilink
      English
      arrow-up
      0
      ·
      25 days ago

      If they are, make a complaint to your local governing body. See if they’ll investigate it. Because it’s not okay for them to agree to terms for you or to try to end around the agreement you made.

        • atrielienz@lemmy.world
          link
          fedilink
          English
          arrow-up
          0
          ·
          25 days ago

          Take your car into a dealer and ask them if the modem is connected. Frame is as you think it’s malfunctioning and they’ll look to see.

          • BlemboTheThird@lemmy.ca
            link
            fedilink
            arrow-up
            0
            ·
            25 days ago

            I mean, they could disconnect it for you, but there’s still no way to know if it’s been transmitting data you don’t want it to in the meantime

        • Em Adespoton@lemmy.ca
          link
          fedilink
          arrow-up
          0
          ·
          25 days ago

          Sure there is. Most people don’t have the hardware handy to do it, but at the end of the day it’s just a computer sending IPv4 traffic through an LTS cellular modem to an S3 bucket.

          And if you know your car’s UDID you can probably look it up in said S3 bucket, since it was open to the public.

            • Em Adespoton@lemmy.ca
              link
              fedilink
              arrow-up
              0
              ·
              24 days ago

              And the decryption key is stored… where?

              Sure, they COULD be using a TPM in the cars and PKI so that having the public key still only lets them encrypt the data and not decrypt it… but in that case, we wouldn’t have this article, because they’d have properly secured the data.

              Since they only really value that telemetry in bulk and have to foot the compute bill, I’m pretty confident they don’t actually do that, but instead depend on the S3 bucket and the connections to it being encrypted.