Stories
Slash Boxes
Comments

SoylentNews is people

posted by Fnord666 on Tuesday July 24 2018, @03:46PM   Printer-friendly
from the doomed-to-repeat-it dept.

Nearly a half-billion Internet of Things devices are vulnerable to cyberattacks at businesses worldwide because of a 10-year-old security flaw, according to a new report from a security software vendor.

The report was published Friday by Armis, a provider of Internet of Things security software for enterprises that focuses on detecting threats in IoT devices at workplaces. The Palo Alto, Calif.-based company has previously made security disclosures, including the BlueBorne malware attack that impacted 5 billion IoT devices.

The web exploit in question is called DNS rebinding, an attack first disclosed at the RSA Conference in 2008 that allows an attacker to bypass a network firewall and use a victim's web browser to access other devices on the network. The attacker can gain access to the web browser through a malicious link enclosed within an email, banner ad or another source. This can leave devices susceptible to data exfiltration, compromise and hijacking, the latter of which could lead to a botnet attack similar to the Mirai malware that took down major websites in 2016.


Original Submission

 
This discussion has been archived. No new comments can be posted.
Display Options Threshold/Breakthrough Mark All as Read Mark All as Unread
The Fine Print: The following comments are owned by whoever posted them. We are not responsible for them in any way.
  • (Score: 2) by Revek on Tuesday July 24 2018, @05:36PM

    by Revek (5022) on Tuesday July 24 2018, @05:36PM (#711793)

    I run both on the residential routers I am responsible for and they are not affected by this.

    --
    This page was generated by a Swarm of Roaming Elephants
    Starting Score:    1  point
    Karma-Bonus Modifier   +1  

    Total Score:   2