Key Points
Cybersecurity expert remotely hacked BYD Shark 6 with no password protection in two weeks.
Hacker controlled headlights, doors, wipers, and music from laptop while car drove at 30 km/h.
BYD vehicles collect internal audio, images, location data that Chinese authorities can access.
Chinese-made EVs represent 40% of Australia's new car sales with growing market share.
A cybersecurity researcher remotely hacked a BYD Shark 6 during an ABC Four Corners investigation, gaining control of critical vehicle functions with minimal security barriers. The breach exposed how easily Chinese-made EVs, which now represent 40% of Australia’s new car sales, can be compromised. Experts warn the vehicles collect and transmit internal audio, images, and location data, creating national security risks for Australian drivers.
How the BYD Shark was hacked in two weeks
Cybersecurity expert Dan Hreszczuk from Fortify Labs in Canberra spent two weeks testing the BYD Shark 6’s security systems. He found an entry point with no password protection at all. That single weakness gave him access to software controlling many vehicle functions. Hreszczuk said the breach was easier than expected, surprising even a professional car security researcher.
What the hacker could control remotely
Once inside the vehicle’s systems, Hreszczuk demonstrated his access during a real-world test. While ABC reporter Angus Grigg drove the Shark 6 at about 30 km/h on a country road outside Canberra, Hreszczuk remotely locked the doors, turned the music up through the speakers, and displayed random images on the infotainment screen. He also switched wipers on at top speed, sprayed the windscreen with water, and turned headlights on and off. The ease of these actions alarmed security experts.
Why Chinese EVs pose a national security risk
Connected vehicles collect and transmit internal and external images, internal audio, navigation entries, and phone logs, according to Australia’s Cyber Security Centre. Experts warn that data poses a greater risk in the hands of Chinese EV makers because they can be compelled by China’s national security laws to cooperate with authorities. The data collection raises concerns about surveillance and espionage. Chinese-made vehicles now account for 40% of Australia’s new car sales, with EV sales continuing to climb.
BYD’s recall and broader market concerns
BYD issued its first mass recall after spare wheels fell off 32,009 Shark 6 vehicles built between August 2024 and June 2026. The cybersecurity breach compounds concerns about the brand’s quality and safety standards. Security researchers emphasize the vulnerability exposes broader risks in connected car design. Australia’s National Cyber Security Coordinator has flagged concerns about EV security, but the government has not yet implemented strict regulations on Chinese vehicle imports.
Final Thoughts
The BYD Shark hack demonstrates that Chinese EVs dominating Australia’s market lack basic security protections. With Meyka grading BYD a B+ and the stock trading at $72.58, investors should weigh regulatory risk against the company’s strong fundamentals.
FAQs
The entry point had no password protection at all. That single weakness gave cybersecurity expert Dan Hreszczuk access to software controlling vehicle functions in just two weeks.
Connected BYD vehicles collect internal and external images, internal audio, navigation entries, and phone logs. Australia’s Cyber Security Centre flagged these data collection risks.
Chinese EV makers can be compelled by China’s national security laws to cooperate with authorities. This means driver data could be accessed by foreign governments without consent.
Chinese-made vehicles now account for 40% of Australia’s new car sales. BYD is one of the most popular brands on Australian roads, with EV sales continuing to climb.
Disclaimer:
The content shared by Meyka AI PTY LTD is solely for research and informational purposes. Meyka is not a financial advisory service, and the information provided should not be considered investment or trading advice.
About Author

Huzaifa Zahoor
Co FounderHuzaifa Zahoor is the engineer who built Meyka. He has spent years writing Python, training AI models, and building data pipelines specifically for financial markets. His technical articles have reached over 30,000 readers on Medium, so he knows how to make complex things easy to follow. If this article touches on how the tools work, he is the person who actually built them.
What brings you to Meyka?
Pick what interests you most and we will get you started.
I'm here to read news
Find more articles like this one
I'm here to research stocks
Ask Meyka Analyst about any stock
I'm here to track my Portfolio
Get daily updates and alerts (coming March 2026)