Car manufactures like BMW, Audi or Mercedes-Benz all provide mobile applications to control your car. All apps share really critical functions like remote lock/unlock or the ability to find your car based on current GPS location.
Can somebody provide any additional information how this kind of communication is secured?
On the BWM app you just have to enter your login information of the BMW connectedDrive Portal and you're set up and have full control over your car. I really doubt the security of real world cars protected with user chosen passwords.
My best guess is that some public key infrastructure is used but I can't find any information.