Technology
Govt Cracks Down on “Remote EV Kill Switch” Apps: BAT-BMS, Lossigy & Epoch i-ion Blocked After Shocking E-Rickshaw Safety Scare
After viral videos showed e-rickshaws being switched off mid-ride via Bluetooth hacks, the government moves to ban BAT-BMS, Lossigy, and Epoch i-ion, warning of wider action against similar apps.
In a swift and serious cybersecurity intervention, the Government of India has ordered the blocking of three battery management applications—BAT-BMS, Lossigy, and Epoch i-ion—after reports emerged that they were being misused to remotely disable electric vehicles, including moving e-rickshaws.
According to government sources, the apps were found vulnerable to exploitation, allowing unauthorized users to interfere with battery systems and cut power supply remotely. Officials have also warned that any similar applications found enabling such misuse will face immediate action.
Confirming the development, S. Krishnan, Secretary at the Ministry of Electronics and Information Technology (MeitY), stated that the apps were already being removed from major platforms. Speaking at a CII cybersecurity summit, he noted that the government is engaging with app store operators to ensure stricter screening of potentially harmful applications.
The issue first gained attention after disturbing viral videos surfaced online showing individuals connecting to nearby e-rickshaws via Bluetooth and abruptly shutting down their batteries while the vehicles were still in motion. What began as social media “pranks” quickly escalated into a serious safety concern, raising alarms about passenger security and the vulnerabilities of connected electric systems.
Read More- Apple iPhone Air Gets Massive ₹29,901 Price Cut on Flipkart: Here’s How You Can Save Even More Before the Deal Ends…
One of the apps under scrutiny, BAT-BMS, was reportedly developed by Shenzhen Grenergy Technology as a legitimate battery management tool. On paper, it allows users to monitor battery health, voltage, temperature, and charging cycles for lithium-ion systems used in electric vehicles.
However, the problem lies not in the purpose of the app, but in how many low-cost electric vehicles are configured in India. Experts point out that a large number of budget e-rickshaws and two-wheelers use imported Chinese battery management systems that often ship with weak or no authentication safeguards. In several cases, default passwords are never changed, making them vulnerable to unauthorized access.
This means anyone within a short Bluetooth range—typically 10 to 15 metres—can potentially pair with a vehicle’s battery system without the owner’s knowledge. Once connected, critical functions such as battery discharge control can be manipulated.

Cybersecurity experts have flagged this as a dangerous loophole, especially as India rapidly expands its electric mobility ecosystem. The growing popularity of connected EV components has outpaced the security standards needed to protect them, creating new risks for drivers and passengers alike.
The Ministry has made it clear that this is not an isolated case. Authorities are now actively monitoring other similar applications that could be exploited in the same way, signalling a broader crackdown on insecure EV software systems.
While Google and Apple have already begun removing flagged apps from their platforms, officials say the incident highlights a deeper structural issue—India’s growing dependence on imported EV electronics with limited cybersecurity safeguards.
As electric mobility expands, the incident serves as a warning that innovation without security checks can quickly turn convenience into vulnerability. The government’s action marks an early but firm step toward tightening digital safety standards in the EV ecosystem.
