Security Analysis of the LIFX Smart Light Bulb

Schneier on Security 2019-01-30

Summary:

The security is terrible: In a very short limited amount of time, three vulnerabilities have been discovered: Wifi credentials of the user have been recovered (stored in plaintext into the flash memory). No security settings. The device is completely open (no secure boot, no debug interface disabled, no flash encryption). Root certificate and RSA private key have been extracted. Boing...

Link:

https://www.schneier.com/blog/archives/2019/01/security_analys_6.html

From feeds:

Gudgeon and gist ยป Schneier on Security

Tags:

internetofthings

Authors:

Bruce Schneier

Date tagged:

01/30/2019, 11:45

Date published:

01/30/2019, 11:00