Slyck.com
 
Slyck Chatbox - And More

A pair of new Bluetooth security flaws expose wireless access points to attack

What's happening in the world of technology related to hardware. Please submit stories for this forum here.
Forum rules
PLEASE READ BEFORE POSTING: Slyck Forum Rules

A pair of new Bluetooth security flaws expose wireless access points to attack

Postby bmh67wa » Thu Nov 01, 2018 1:46 pm

Story : https://techcrunch.com/2018/11/01/bleedingbit-security-flaws-bluetooth-wireless-





Security researchers have found two severe vulnerabilities affecting several popular wireless access points, which — if exploited — could allow an attacker to compromise enterprise networks.

The two bugs are found in Bluetooth Low Energy chips built by Texas Instruments, which networking device makers — like Aruba, Cisco and Meraki — use in their line-up of enterprise wireless access points. Although the two bugs are distinctly different and target a range of models, the vulnerabilities can allow an attacker to take over an access point and break into an enterprise network or jump over the virtual walls that separate networks.

Security company Armis calls the vulnerabilities “Bleeding Bit,” because the first bug involves flipping the highest bit in a Bluetooth packet that will cause its memory to overflow — or bleed — which an attacker can then use to run malicious code on an affected Cisco or Meraki hardware.

The second flaw allows an attacker to install a malicious firmware version on one of Aruba’s devices, because the software doesn’t properly check to see if it’s a trusted update or not.







In the 60's, people took acid to make the world weird. Now the world is weird and people take Prozac to make it normal.

zbeast wrote:80's porn is so strange big hair and lazy humping.
User avatar
bmh67wa
 
Posts: 3371
Joined: Sun Jul 28, 2002 10:32 pm
Location: sanctuary.darkservers.net:3456,4568 or 8888

Return to Tech/Hardware News

Who is online

Users browsing this forum: No registered users and 1 guest

© 2001-2008 Slyck.com