
iauth365 Tech and Bmei apologize
A mistake caused two devices to activate marking the loss of confidential information. It resulted in iauth365 Tech and Bmei having to publicly apologize for the incident. i365 Tech website provided a permissive SSL connection with an encrypted HTTPS tunnel. The payment page served using HTTPS, while the site’s JavaScript was enforced to only allow TLS 1.2 or better with the left-pad key handshake, which is common Internet protocols feature. Encrypted have been the HTTP response headers.
Avast also found that the device could issue commands beyond the intended use of GPS-tracking products, including the ability to dial a phone number. This could be an advantage for third parties who now know where your device is located.
An attacker was able to use the device’s SMS capabilities to send messages and monitor them too. And they were also able to launch an attack or recall previously sent messages. Keep in mind that this is only one possible way an attack could happen, there are many others we recommend you watch out for too.
Accessing the device is easy to do, so it is vulnerable to remote attacks. At a device compromised, specific attacks could take place, such as installing new firmware or installing backdoors that allow the attacker to take control over the device.
Avast developed a new research paper which showed some dangerous trends in cheap smart devices that could lead to malware infections. This report came about when thousands of smart devices were purchased over a 24 hour period. “As parents, we are willing to embrace technology that promises to help keep our children safe. We need, though, to be aware of the products we buy,” said Leena Elias, head of product delivery at Avast.
“Beware of manufacturers that don’t meet minimum security standards or don’t have third-party certificates or validations. Only buy brands you trust to keep your data safe – the added cost is worth the peace of mind. “
If you found this article helpful and interesting, then you may also like this one.
Author: PC-GR
The World of Technology