100M IoT Devices Exposed By Zero-Day Bug
#1
Information 
Quote:A flaw in a widely used internet-of-things (IoT) infrastructure code left more than 100 million devices across 10,000 enterprises vulnerable to attacks.
 
Researchers at Guardara used their technology to find a zero-day vulnerability in NanoMQ, an open-source platform from EMQ that monitors IoT devices in real time, then acts as a “message broker” to deliver alerts that atypical activity has been detected. EMQ’s products are used to monitor the health of patients leaving a hospital, to detect fires, monitor car systems, in smartwatches, in smart-city applications and more.
 
“Guardara used its technology to detect multiple issues…that caused EMQ’s NanoMQ product to crash during testing,” the company said in a press statement. “The existence of these vulnerabilities means that any NanoMQ reliant system could be brought down completely.”
 
Guardara CEO Mitali Rakhit told Threatpost that the vulnerability (no CVE assigned) was given a CVSS score of 7.1, making it high-severity.
“How dangerous it is depends on what setting NanoMQ is used in,” Rakhit added.

Read more: 100M IoT Devices Exposed By Zero-Day Bug | Threatpost
[-] The following 1 user says Thank You to silversurfer for this post:
  • harlan4096
Reply


Forum Jump:


Users browsing this thread: 1 Guest(s)
[-]
Welcome
You have to register before you can post on our site.

Username/Email:


Password:





[-]
Recent Posts
K-Lite Codec Pack 19.7.0 / 19.7.1 Update
Changes in 19.7.0:...harlan4096 — 07:19
Sophos Home for Windows 2025.2
Applies to: Sophos...harlan4096 — 07:15
Vivaldi 8.0 Build 4033.28
Vivaldi 8.0 Build ...harlan4096 — 07:12
Google API Key Issue Allows Deleted Keys...
Google Cloud API k...harlan4096 — 07:11
Qualcomm vulnerability: phone repairs an...
Our experts have d...harlan4096 — 07:10

[-]
Birthdays
Today's Birthdays
avatar (40)odukoromu
Upcoming Birthdays
avatar (39)axuben
avatar (40)ihijudu
avatar (46)Joanna4589

[-]
Online Staff
There are no staff members currently online.

>