Their Trains Were Stalled. These Hackers Brought Them Back to Life.

WARSAW—It’s a nightmare for any laptop user when the innards go haywire and the device freezes up irreversibly—a disaster called “bricking.”

Now imagine it happening to a 175-ton passenger train.

It began with Dolnośląskie Rail, which functions as a sort of MTA of southwest Poland. Much of its rolling stock had been made by the Polish company Newag.

After ferrying millions of passengers over the years, about a dozen of the railway’s trains needed to be refurbished. Dolnośląskie gave Newag a shot at the job, but also solicited other bids. The railway decided it stood to save at least one million złoty ($255,118) by going with a Newag competitor known as SPS. By April 2022, the run-of-the-mill maintenance was supposed to make the trains good as new.

Or so everyone thought.

Without warning, nearly all of the refurbished trains began “selectively, but permanently” failing, said the railway’s lawyer, Mirosław Eulenfeld. Dolnośląskie worried that the region would be paralyzed if any more trains stalled.

their trains were stalled. these hackers brought them back to life.

SPS technicians tried tinkering with the trains’ mechanical systems to no avail. It became apparent that the faults stemmed from the main computer, which wouldn’t let the engines start. They were flummoxed.

“None of us could focus,” said Monika Mieczkowska, the daughter of SPS’s owner, with a deadline to deliver the trains quickly looming. While on a family vacation in Spain, she came up with the idea of googling “Polish hackers.”

She emailed a group that called itself “Dragon Sector,” and soon after, a trio of hackers reported for duty. A collection of coders with normal day jobs who come together in their off hours to defend cyberspace from malicious intrusions, they consider themselves “white-hat” hackers. To the extent that anybody knew about them, it was because Dragon Sector often participates in global “capture the flag” competitions, which solve complicated cybersecurity-related puzzles.

They weren’t known for their expertise in locomotives.

Still, they threw themselves into the challenge. For several weeks between May and August 2022, Dragon Sector worked across Europe under the rail operator’s tight deadline. In the final week, they pored over code in 24-hour shifts. They coordinated with partners not over Slack, but via the 1990s-era Internet chat system IRC.

their trains were stalled. these hackers brought them back to life.

“The reality is, we just slept less,” said Jakub Stępniewicz, who goes by the nom de pirate “MrTick” and whose day job helps prevent aircraft collisions in the aviation industry.

The three found that about a dozen of the trains’ computers had software code in them that, in certain circumstances, could trigger them to shut down. The code, for instance, could detect when the trains were stopped for long periods—usually a sign a train was in a rail yard for repairs.

After a different broken train was returned from Newag, the group discovered GPS coordinates in it just happened to pinpoint boundaries on a map around Newag’s competitors.

It was an electronic leash that seemed to tether any repair work to the manufacturer. And it was a problem, the hackers say, that extended to other trains across Poland. One train on a different railway even had code that signaled a mechanical breakdown even though the system was working fine.

“What Newag did,” Eulenfeld said, “was truly gangster-like.”

Newag didn’t respond to inquiries seeking comment. In a previous statement, Newag had denied the software subterfuge, arguing its code was “clean” and that SPS ginned up a “conspiracy theory for the media” to avoid paying contract penalties.

With minutes to spare under the railway’s deadline, the hackers came up with programmatic workarounds that brought the locomotives back to life.

their trains were stalled. these hackers brought them back to life.

“In a true MacGyver-like fashion, the boys succeeded,” said Mieczkowska, adding that they finished the job with 43 minutes left in the time allotted by SPS’s contract with the railway. “I was crying.”

Dragon Sector presented their findings to fellow hackers earlier this year at the annual Chaos Communication Congress in Germany. Although their presentation was full of technical findings—“We reverse-engineered based on traffic dumps and a Windows DLL”—it drew chuckles from a sympathetic audience who understood it took a group of techies to fix a European railway.

There have also been unspecific threats of legal action by Newag, the hackers said. Experts fear that could increase the stakes for hackers who use their skills to further the public interest.

“There’s a passionate and talented community of security researchers that has long viewed good-faith security research as a means of helping society, and helping to secure these digital systems that we increasingly rely on,” said Harley Geiger, a Washington-based lawyer and founder of the Security Research Legal Defense Fund, whose first grant helped Dragon Sector. “I think that, for many of them, they do it because they view it as the right thing to do.”

Then there was trying to get Polish authorities on board. “They were not techies, but they understood the case. They just did nothing about it. That is what upsets me,” said Michał “Redford” Kowalczyk, one of the hackers, about the group’s meeting with officials from Poland’s Internal Security Agency. “It took them exactly one year to take any action.”

The security agency declined to comment.

Meanwhile, at least, most of the trains in Poland are running again.

“Newag makes good trains. It is not our intention to drive the company into the ground. It is about consequences: identifying those responsible and removing them from the company, said Sergiusz Bazanski, who goes by “q3k.”

“What they did was brazen,” Kowalczyk added. “We are hoping for new legal regulations so that this never happens again.”

Write to Jack Gillum at [email protected]

OTHER NEWS

24 minutes ago

‘It’s bittersweet, I came here to get Olympic standard’ – Luke McCann sets new 1500m personal best at Stockholm Diamond League

24 minutes ago

Perseverance and selfless contributions yield top awards for Co Wexford students

24 minutes ago

Barry Keoghan set to star in new crime film alongside Chris Hemsworth and Mark Ruffalo

31 minutes ago

California sheriff quips he’s ‘changing teams,’ urges support for ‘convicted felon’ Trump

31 minutes ago

Revised Skydance Offer Gives Paramount Shareholders Opportunity to Cash Out at Roughly $15 a Share

31 minutes ago

The Hockey News Passes 10 Million Pageviews in May

31 minutes ago

Ross Atkins says Blue Jays haven’t ‘spent any time’ on Bichette, Guerrero Jr. trades

31 minutes ago

Donald Trump Pretends Like 'Lock Her Up' Was Never One Of His Rallying Cries

31 minutes ago

Five players who could break out for the Bears in 2024

31 minutes ago

How a U.S. heat dome could bring severe summer storms to Canada

31 minutes ago

UK within British empire is like last person left at a party, says David Olusoga

31 minutes ago

Cole Hauser Shares Photo from Montana as 'Yellowstone' Filming Resumes

31 minutes ago

Ruthless Iga Swiatek delivers 6-0, 6-0 demolition job at French Open

31 minutes ago

California’s Corral Wildfire Grows To 12,500 Acres—Forcing Evacuations And Interstate Closure

31 minutes ago

Stars’ road success should provide hope for staving off elimination

31 minutes ago

Steelers OTAs And Minicamp: What We Know & What We Don't

31 minutes ago

Northern Ireland veteran recalls ‘slaughter house’ at D-Day landings

31 minutes ago

Elections 2024: Where do we go from here? Here are some of the things to expect

31 minutes ago

The BT share price jumped 25% in May! Should I snap it up in June?

31 minutes ago

Could Steelers Make History With Harris and Warren?

31 minutes ago

Trump allies signal they’re declaring war against Republican Senate candidate

31 minutes ago

Iran's ex-president Ahmadinejad registers to run in presidential elections

34 minutes ago

Gay pride revelers in Sao Paulo reclaim Brazil's national symbols

36 minutes ago

Vancouver police say missing senior found safe

36 minutes ago

Laura Hamilton warns fans over 'sick' scammers using Jonnie Irwin's death for cash

36 minutes ago

Layton Williams leaves BBC star in tears over inspirational Strictly Come Dancing stint

36 minutes ago

Britain's Got Talent's Denise and Stefan 'mourn the life their son could've had'

36 minutes ago

Video: Rob Burrow dies aged 41: Tributes flow for rugby league star who won millions of new fans during brave five-year battle with motor neurone disease - as friends say 'he will continue to inspire us every day'

36 minutes ago

Video: Inside Rob Burrow's five-year battle with Motor Neurone Disease from first symptoms to selfless family wish as rugby star dies aged 41

36 minutes ago

Video: Moment Pro-Palestine protesters clash with Pride parade - causing social media to erupt: 'QueersforPalestine had a change of heart!'

36 minutes ago

Albany Creek murder-suicide: Man and woman shot dead

36 minutes ago

A fire scorches thousands of acres east of San Francisco, prompting evacuations

39 minutes ago

From 'club' channels to language-filtering bots: How digital tools are helping staff feel more included at work

41 minutes ago

Video: Rob Burrow dies aged 41: Tributes flow for rugby league star who won millions of new fans during brave five-year battle with motor neurone disease - as friends say 'he will continue to inspire us every day'

41 minutes ago

Video: Fans joke Alesha Dixon looks like a Quality Street as she wears bizarre shiny red dress for Britain's Got Talent final

41 minutes ago

Fans joke Alesha Dixon looks like a Quality Street as she wears bizarre shiny red dress for Britain's Got Talent final

41 minutes ago

Angel Reese's WNBA Salary Resurfaces After Fine

41 minutes ago

'You newspapers like to create headlines about England. I have always been committed to Ireland'

41 minutes ago

PM Narendra Modi's action-packed day: Key meetings on 100-day agenda, heatwave crisis, cyclone relief

41 minutes ago

Real Madrid celebrates another Champions League title with its fans on streets of Spanish capital