Lousy IoT Security
Schneier on Security 2019-12-19
Summary:
DTEN makes smart screens and whiteboards for videoconferencing systems. Forescout found that their security is terrible: In total, our researchers discovered five vulnerabilities of four different kinds: Data exposure: PDF files of shared whiteboards (e.g. meeting notes) and other sensitive files (e.g., OTA -- over-the-air updates) were stored in a publicly accessible AWS S3 bucket that also lacked TLS encryption...
Link:
https://www.schneier.com/blog/archives/2019/12/lousy_iot_secur.htmlFrom feeds:
Berkman Center Community - Test » Schneier on SecurityGudgeon and gist » Schneier on Security