Lousy IoT Security

Schneier on Security 2019-12-19

Summary:

DTEN makes smart screens and whiteboards for videoconferencing systems. Forescout found that their security is terrible: In total, our researchers discovered five vulnerabilities of four different kinds: Data exposure: PDF files of shared whiteboards (e.g. meeting notes) and other sensitive files (e.g., OTA -- over-the-air updates) were stored in a publicly accessible AWS S3 bucket that also lacked TLS encryption...

Link:

https://www.schneier.com/blog/archives/2019/12/lousy_iot_secur.html

From feeds:

Berkman Center Community - Test » Schneier on Security
Gudgeon and gist » Schneier on Security

Tags:

Authors:

Bruce Schneier

Date tagged:

12/19/2019, 10:06

Date published:

12/19/2019, 07:31