E-rickshaw battery 'hacks' expose Bluetooth BMS vulnerabilities, raising supply chain security concerns

Viral videos demonstrating the disabling of e-rickshaw batteries using mobile apps like BAT-BMS have exposed security flaws in imported Battery Management Systems (BMS) modules, primarily from China. These apps, designed for diagnostics, exploit a lack of authentication in Jiabaida BMS modules. The government's response of banning apps instead of addressing underlying supply chain vulnerabilities is criticized. The article highlights that almost all e-rickshaw components are imported, and existing regulations lack detailed standards for electronic components. Stronger supply chain oversight, security standards, and vetting of suppliers are needed to prevent such exploits.

Key Points

  • Viral videos show e-rickshaw batteries being disabled using mobile apps that exploit vulnerabilities in Bluetooth Battery Management Systems (BMS).
  • The apps, like BAT-BMS, are designed for diagnostics but exploit a lack of authentication in imported Jiabaida BMS modules from China.
  • The government's response of banning apps is criticized as it fails to address the root cause: underlying security flaws in the supply chain.
  • Almost all e-rickshaw components are imported from China, and current regulations lack detailed security standards for electronic parts.
  • Effective solutions require stronger supply chain oversight, vetting of suppliers, auditing firmware, and establishing comprehensive security standards for electronic components.

Exam Facts

  • Apps like BAT-BMS, Lossigy, Epoch-i-ion used for disabling batteries.
  • Vulnerabilities found in Jiabaida BMS modules (Chinese electronics company).
  • Gazette notifications GSR 709(E) dated 8.10.2014 and S.O. 2590(E) dated 8.10.2014 define e-rickshaw requirements.

Read it. Retain it. Recall it.

Get spaced-repetition flashcards, daily quizzes and offline access — free on Android.

Get it on Google Play

All current affairs of 7 July 2026