I do agree, and Cisco immediately grabbed the occasion to push their shitty restrictive trusted boot policy. Which is worrying.
Comment on Backdoored firmware lets China state hackers control routers with “magic packets”
Unaware7013@kbin.social 1 year agoI wonder if they're using default/hard coded creds (Ciscos have had a ton of them) or if its just bad password hygiene on the admins' part.
ddkman@lemm.ee 1 year ago
partial_accumen@lemmy.world 1 year ago
Hardcoded creds seems like a really bad idea on a network appliance. If they MUST have hardcoded creds how about they only work when sent through a serial console at least your attacker would have to have local physical access to the device.