GM's Cruise Automation hires Didi's Charlie Miller and Uber's Chris Valasek, the security researchers who had previously hacked into moving jeeps
Miller left Didi after just four months. — Noted security experts Charlie Miller and Chris Valasek — famed for remotely hacking a Jeep …
Context & Ripple Effects
Charlie Miller and Chris Valasek have become the most-recruited names in vehicle security: Uber hired the pair back in 2015 after their remote Jeep hack made their reputations, and Didi then pulled Miller away just four months ago to lead security at its newly opened Mountain View AI lab. Now GM's Cruise Automation takes both — a direct raid on its two biggest ride-hailing rivals' security benches.
The move matters because Cruise is racing to put driverless cars on public roads, and the researchers who proved a moving Jeep could be hijacked are the clearest signal a self-driving program can send about taking attack surfaces seriously.
First-order effects
- Cruise gains in-house expertise in exactly the remote-exploitation scenarios its driverless fleet must defend against, while Uber loses Valasek and Didi's four-month-old Mountain View lab loses its security lead before it could establish itself.
Second-order effects
- Didi must rebuild the security leadership it hired Miller to provide, and both ride-hailing rivals now face a competitor whose safety story is reinforced by the industry's best-known white-hat credentials.
Third-order effects
- Vehicle security is consolidating from an academic stunt into a corporate arms race — a trajectory later confirmed when automotive cybersecurity startup Upstream raised $62M led by Mitsui Sumitomo Insurance — pushing every automaker and AV program to staff dedicated red teams rather than treat hacking research as external threat noise.
The trend: Autonomous-driving programs are turning elite vehicle-security talent into a competitive asset, with GM, Uber, and Didi cycling the same researchers through successive labs.