PDA

View Full Version : Car theft in 2024



Xtrema
03-20-2024, 08:48 AM
https://youtu.be/W9cZmJHOuK0

Can someone really order a fob based on VIN? If that works, that's a huge loophole.

bjstare
03-20-2024, 08:56 AM
Pretty sure when I asked about another key for my BMW, the only option was to order it by VIN :dunno:

Xtrema
03-20-2024, 10:27 AM
Pretty sure when I asked about another key for my BMW, the only option was to order it by VIN :dunno:

As in I thought more authorization/programming needed and not just get a key and drive away.

dj_rice
03-20-2024, 11:02 AM
In MB world, if your car is a FBS3 key which is anything pre 2014 and lder, its ordered by VIN and comes pre-programmed at the warehouse ready to go. If your car is a FBS4 which IIRC is like MY15+, fob is blank and will require programming with Xentry and the vehicle.

We require copies of a license and proof of ownership paperwork before we order/release a key.

ThePenIsMightier
03-20-2024, 12:08 PM
In MB world, if your car is a FBS3 key which is anything pre 2014 and lder, its ordered by VIN and comes pre-programmed at the warehouse ready to go. If your car is a FBS4 which IIRC is like MY15+, fob is blank and will require programming with Xentry and the vehicle.

We require copies of a license and proof of ownership paperwork before we order/release a key.

This.
Decades ago it was allegedly more common for dealers to potentially have low enforcement for proof of ownership and people would put electrical tape over their VIN in the windshield to thwart this tactic.
I think it was and still is a "casinos in Carseland hate it when you do this, but they can't stop you from this hack..."

mr2mike
03-20-2024, 03:03 PM
I wrap EVERYTHING in black electrical tape. White Alphas hate this hack, but they can't stop you from plowing more than them.

Flexray
03-20-2024, 04:36 PM
In that video, there is some truth, fear mongering, and misinformation.

The guy who started the cars in their timed test, was using an Autel scan tool. He was using a method provided by OE manufacturers for aftermarket shops to program security functions. I'm not sure about the UK, but for north America you have to have a vehicle security professional license provided from:
https://wp.nastf.org/
Apparently all law enforcement agencies, nastf, and OE's are putting a lot of effort into reducing security licenses used for crime.

The vehicles that have pre-programmed keys that are mailed from the manufacturer. Is the manufacturer trying to gain more control over security. The dealership or security professionals do not have access to the vehicles security encryption for these vehicles.

I think the obd jumper is stupid. If you can read a wiring diagram you can just cut the jumper off and connect the two diagnostic bus lines to the scan tool.

I like the part about the 13 year old. It is very possible that a pre teen is stealing cars in this fashion. But, this actually requires some education. Vehicle access, key and drive authorization are distributed across multiple systems and modules. You have know what functions to perform, in what order, and know where these functions are. This requires a high degree of technical reading skills, understanding of vehicle communication networks and processes.

The guy in the video is like the British Scotty Kilmer.

ThePenIsMightier
03-20-2024, 06:27 PM
I think Scotty Kilmer died. I think he used to have a few decent videos and then (I assume) decided to start making WAY WAY too many and the content just wasn't there.

ExtraSlow
03-20-2024, 08:53 PM
and he was murdered for it? Plausible.

dj_rice
03-20-2024, 10:05 PM
This.
Decades ago it was allegedly more common for dealers to potentially have low enforcement for proof of ownership and people would put electrical tape over their VIN in the windshield to thwart this tactic.
I think it was and still is a "casinos in Carseland hate it when you do this, but they can't stop you from this hack..."

We take our TRP (theft relevent parts) very seriously at my dealer. No proof of ownership. No order. Dont care if your girlfriends brothers aunt's hairdresser car. If you arent the registered owner on the registration/and or insurance, and names don't match the licence. No order. We get in shit by MB corporate so we are strict. And you have to pick it up in person and we verify all info before we release. We do not ship out keys for liability reasons. It could get intercepted and then car stolen. So what you saw in Gone In 60 Seconds is not reality.

We won't even sell a for example valve body for a transmission as those are VIN coded and need to be programmed by Xentry to a customer over the counter nor a indy shop. Has to be done in house by our techs with our computers.

Flexray
03-20-2024, 10:37 PM
We take our TRP (theft relevent parts) very seriously at my dealer. No proof of ownership. No order. Dont care if your girlfriends brothers aunt's hairdresser car. If you arent the registered owner on the registration/and or insurance, and names don't match the licence. No order. We get in shit by MB corporate so we are strict. And you have to pick it up in person and we verify all info before we release. We do not ship out keys for liability reasons. It could get intercepted and then car stolen. So what you saw in Gone In 60 Seconds is not reality.

We won't even sell a for example valve body for a transmission as those are VIN coded and need to be programmed by Xentry to a customer over the counter nor a indy shop. Has to be done in house by our techs with our computers.

With a vehicle security credential and a Xentry subscription. You can fill out TRP order form that is integrated into the secure data release model portal.
No aftermarket shop ever does this because the software subscription is $25 000 year and takes months to set up. You have to do a shit load of Mercedes to break even.
I don't think the Mercedes government mandated J-2534 pass through even works. So you have to find non-cloned hardware somewhere. Mercedes don't give a fuck, it's great.

dj_rice
03-20-2024, 11:45 PM
With a vehicle security credential and a Xentry subscription. You can fill out TRP order form that is integrated into the secure data release model portal.
No aftermarket shop ever does this because the software subscription is $25 000 year and takes months to set up. You have to do a shit load of Mercedes to break even.
I don't think the Mercedes government mandated J-2534 pass through even works. So you have to find non-cloned hardware somewhere. Mercedes don't give a fuck, it's great.


Sure you can do the programming Service side of it, but you still cant work around the Parts Dept placing the order for you so its moot if you have all the software and tools. Not sure how it works at the MB dealers in YYC but both YEG dealers are in agreement with the policy.

Flexray
03-21-2024, 12:56 AM
Sure you can do the programming Service side of it, but you still cant work around the Parts Dept placing the order for you so its moot if you have all the software and tools. Not sure how it works at the MB dealers in YYC but both YEG dealers are in agreement with the policy.

I have never done this. But the procedure is something like.
You have to have the vehicle owner authorization form, and the positive identification form. You log into NASTF, go into SDRM, submit the forms that has everyone's information and the vehicle information. Then you are granted security access to the vehicle. From here you can access a TRP order form. You take that form to the dealer parts department and they will order the parts for you. Once you get the parts, you install them. Xentry will ask for a pin code that you get from SDRM. And your VSP number. The pin code will give you access into the vehicles security. Then you program and configure the part. Every aftermarket shop that I know of that runs into a TRP flogs the job off to the dealer.
According to the posted video, 13 year olds are doing this.

haggis88
03-21-2024, 06:13 AM
both YEG dealers are in agreement with the policy.

Collusion and anti-competition, the real Canadian way <3