Cisco: https://www.theregister.co.uk/2019/05/02/cisco_vulnerabilities/ … Juniper: https://blog.rapid7.com/2015/12/20/cve-2015-7755-juniper-screenos-authentication-backdoor/ … Fortinet: https://devco.re/blog/2019/08/09/attacking-ssl-vpn-part-2-breaking-the-Fortigate-ssl-vpn/ … Everything is kinda poor, it's not just one vendor.
-
-
Prikaži ovu nit
-
Here is where I'm a bit perplexed. With the constant barrage of "Huawei backdoors", surely this is a call to action for hackers to start to find them? I mean according to papers and press, they are all over. https://www.ebay.co.uk/itm/Huawei-SmartAX-MA5612-8-Ports/311669328340?hash=item4890f089d4:g:p9UAAOSwCfdXom2d …https://www.ebay.co.uk/itm/Genuine-HUWEI-WD2M000PEU03-UPEU-UPEUc-BTS-base-station-for-Huawei-BTS3012/263760497346?hash=item3d6959cac2:g:zK4AAOSw7m9bJGLE …
Prikaži ovu nit -
I'd also maybe include Nokia and Ericsson too, because if this is the stuff we need secure and will be used by .gov, then the more eyes looking at the firmware and components can only make it better for everyone. Could make a brilliant conference talk
#JustSayingPrikaži ovu nit -
Just to be clear, I have huge concerns that any vendor based in any country that likes full control can/will/may/might ask them to do stuff when needed. That's just how it works, more so in China but the constant 'backdoor' argument to supplement that is pretty poor
Prikaži ovu nit -
If there are backdoors, it's not only gov who will exploit them but criminals too. Herein lies the heart of the issue for me, it's less about security and more abour protectionism as I've not seen strong words used against those who have been found to have backdoors
Prikaži ovu nit
Kraj razgovora
Novi razgovor -
-
-
Tweet je nedostupan.
-
Indeed and the one report that everyone seems to reference, https://finitestate.io/wp-content/uploads/2019/06/Finite-State-SCA1-Final.pdf …, if you applied the same to most kit, hell it would be one hell of a party, for example https://support.citrix.com/article/CTX267027 …
- Još 2 druga odgovora
-
-
-
Yeah I’ve had stuff said to me over the years about check point and backtrack/kali etc. Rumours without evidence are a massive problem.
-
Been going on for years. That said I do remember doing some work for an Arab embassy many years ago. The guy mentioned he was looking at firewalls & his supplier had recommended Check Point.... They didn't win that one
- Još 7 drugih odgovora
Novi razgovor -
-
-
Yeah I mean it's not like there are backdoors and code quality issues with any other vendors is it?!
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
-
Čini se da učitavanje traje već neko vrijeme.
Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.