The Hidden Cybersecurity Risks of the EV Charging Ecosystem – A Critical Look

As electric vehicles become a staple of sustainable mobility, the infrastructure supporting them—particularly EV charging stations—is growing rapidly to meet demand. However, these charging networks are increasingly becoming a vulnerable entry point for cybercriminals, threatening critical infrastructure and the long-term adoption and safety of sustainable mobility.

A Gateway to Attacks on Critical Infrastructure

EV charging stations are not just plug-in points to power up vehicles—they are interconnected IoT devices that can be exploited by malicious actors. A compromised charging station can serve as a conduit for attacks on entire networks, vehicles, and even power grids. Malicious code execution and vehicle malware infections are just a few of the emerging threats. Worse yet, these vulnerabilities can be leveraged to destabilize power grids, creating artificial demand spikes that can result in blackouts or service disruptions.

Recent incidents highlight the urgency of addressing security gaps in EV infrastructure:

February 2024: The UK suspended sales of Spanish EV chargers due to cybersecurity concerns, raising alarms about potential threats to national energy security.

April 2024: Researchers discovered six zero-day vulnerabilities in the Open Charge Point Protocol (OCPP), exposing weaknesses in backend communications across multiple EV charging management systems.

August 2024: The US government launched a cybersecurity initiative aimed at protecting clean energy systems, with a specific focus on securing EV charging infrastructure and the national power grid.

November 2024: A data breach compromised 116,000 records from global EV charging networks, highlighting the severe risks posed by inadequate security measures.

EV charging infrastructure is critical infrastructure that must be secured against cyber threats. Without robust security, charging stations become prime targets for hackers, leading to operational disruptions, compromised personal data, and large-scale grid failures. Strengthening cybersecurity for EV charging is not just about protecting EV users—it’s about ensuring the stability of energy infrastructure and the adoption of sustainable mobility.

Explore the trends and risks impacting the automotive and smart mobility industry in Upstream’s 2025 Global Automotive Cybersecurity Report, and deepen your understanding of the threats impacting the EV charging ecosystem.

Newsletter Icon

Subscribe
to our newsletter

Stay up-to-date on the latest trends, emerging risks, and updates

Moving Minds: Giuseppe Serio hosts Darren Shelcusky

Moving Minds is a new series dedicated to the visionaries, experts, and builders shaping how we move. Guided by Giuseppe Serio, it brings forward the…

More Details

Upstream’s 2026 Global Automotive Cybersecurity Report Executive Summary

The rapid adoption of AI, including Generative AI and large language models, is fundamentally changing how cybersecurity risks emerge in Automotive and Smart Mobility environments.…

More Details

2026 Global Automotive & Smart Mobility Report – The AI Awakening

Dive into how AI is reshaping the automotive, smart mobility, and physical AI threat landscape, alongside the surge in ransom-related attacks.

More Details

Moving Minds: Giuseppe Serio hosts Elisa Romano

Moving Minds is a new series dedicated to the visionaries, experts, and builders shaping how we move. Guided by Giuseppe Serio, it brings forward the…

More Details

Moving Minds: Giuseppe Serio hosts Kristie Pfosi

Moving Minds is a new series dedicated to the visionaries, experts, and builders shaping how we move. Guided by Giuseppe Serio, it brings forward the…

More Details

Moving Minds: Giuseppe Serio hosts Dr. Martin Hofmann

Moving Minds is a new series dedicated to the visionaries, experts, and builders shaping how we move. Guided by Giuseppe Serio, it brings forward the…

More Details