An IoT educational exercise reveals a far-reaching vulnerability. episode artwork

EPISODE · Sep 18, 2021 · 23 MIN

An IoT educational exercise reveals a far-reaching vulnerability.

from Research Saturday · host N2K Networks

Guest Jake Valletta, Director of Professional Services at Mandiant, joins Dave to talk about the critical vulnerability Mandiant disclosed that affects millions of IoT devices. Mandiant disclosed a critical risk vulnerability in coordination with the Cybersecurity and Infrastructure Security Agency (“CISA”) that affects millions of IoT devices that use the ThroughTek “Kalay” network. This vulnerability, discovered by researchers on Mandiant’s Red Team in late 2020, would enable adversaries to remotely compromise victim IoT devices, resulting in the ability to listen to live audio, watch real time video data, and compromise device credentials for further attacks based on exposed device functionality. These further attacks could include actions that would allow an adversary to remotely control affected devices. The research can be found here: Mandiant Discloses Critical Vulnerability Affecting Millions of IoT Devices

Episode metadata supplied by the publisher feed · Published Sep 18, 2021

Embed this episode

NOW PLAYING

An IoT educational exercise reveals a far-reaching vulnerability.

0:00 23:09

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

No similar episodes found.

No similar podcasts found.

Frequently Asked Questions

How long is this episode of Research Saturday?

This episode is 23 minutes long.

When was this Research Saturday episode published?

This episode was published on September 18, 2021.

Can I download this Research Saturday episode?

Yes. Use the download control on the episode player to save the publisher-provided media file.
URL copied to clipboard!