![]() |
|
Highschool student hacks 150k IoT printers - Printable Version +- Sinisterly (https://sinister.ly) +-- Forum: General (https://sinister.ly/Forum-General) +--- Forum: World News (https://sinister.ly/Forum-World-News) +--- Thread: Highschool student hacks 150k IoT printers (/Thread-Highschool-student-hacks-150k-IoT-printers) Pages:
1
2
|
Highschool student hacks 150k IoT printers - Inori - 02-13-2017 "A pissed off high school student who fucked his future in computing science" from the UK recently automated an IoT printer-hacking shitstorm. Stackoverflowin's (known on Twitter as @lmaostack) program affected over 150,000 printers worldwide, which stack didn't expect to happen. I guess this just goes to show how many business owners/IT departments don't know what the fuck they're doing when it comes it IoT. https://motherboard.vice.com/en_us/article/this-teen-hacked-150000-printers-to-show-how-the-internet-of-things-is-shit RE: Highschool student hacks 150k IoT printers - Blink - 02-13-2017 It's been shown before that printers generally don't have the best security. IoT device makers need to get their shit together. RE: Highschool student hacks 150k IoT printers - Mr.Kurd - 02-13-2017 I don't trust anyway the tools which connect to the internet. RE: Highschool student hacks 150k IoT printers - Blink - 02-13-2017 (02-13-2017, 04:40 AM)Mr.Kurd Wrote: I don't trust anyway the tools which connect to the internet. What? As in connecting the printer? Those things shouldn't work over WAN anyway, wtf is wrong with these companies? RE: Highschool student hacks 150k IoT printers - Mr.Kurd - 02-13-2017 (02-13-2017, 04:45 AM)Ender Wrote:(02-13-2017, 04:40 AM)Mr.Kurd Wrote: I don't trust anyway the tools which connect to the internet. I don't know Ask the companies.Man they just want making moneys. You know the solution for a lot of patient have been found but the biggest companies won't publish it because they are poor and need more money
RE: Highschool student hacks 150k IoT printers - mothered - 02-13-2017 I've always said "The moment you establish an Internet connection, your anonymity Is no longer In your control". And those printers that have an Internal HDD that may have kept Credit Card Images, Drivers Licenses etc (although some are In encrypted form) that employees have simply copied for personal reasons, may no longer be personal. RE: Highschool student hacks 150k IoT printers - Inori - 02-13-2017 (02-13-2017, 04:27 AM)Ender Wrote: It's been shown before that printers generally don't have the best security. (02-13-2017, 05:10 AM)mothered Wrote: I've always said "The moment you establish an Internet connection, your anonymity Is no longer In your control". Granted, the manufacturers could do a better job of securing their devices, but they can only do so much if the end user decides to do something stupid. RE: Highschool student hacks 150k IoT printers - mothered - 02-13-2017 (02-13-2017, 05:23 AM)Inori Wrote: but they can only do so much if the end user decides to do something stupid. Absolutely. A device Is only as secure as the person who operates It. Users need to be cautious with the "Task" they're performing. T= Training. A= Awareness. S= Skill set. K= Know-how. And In a corporate environment, a lot of the above comes from the lack of company policies to educate their employees. RE: Highschool student hacks 150k IoT printers - Jiggly - 02-13-2017 (02-13-2017, 05:41 AM)mothered Wrote:(02-13-2017, 05:23 AM)Inori Wrote: but they can only do so much if the end user decides to do something stupid. Holy crap, I didn't even realise this was a possibility. It seems obvious now but I'm sure I've made these mistakes somewhere along the line. Ironically I have to create a policy brief for a class project, it would be amusing to see if I could use this as a suggestion for mine xD RE: Highschool student hacks 150k IoT printers - mothered - 02-14-2017 (02-13-2017, 06:47 AM)Jiggly Wrote:(02-13-2017, 05:41 AM)mothered Wrote:(02-13-2017, 05:23 AM)Inori Wrote: but they can only do so much if the end user decides to do something stupid. The T.A.S.K (as elaborated above) Is something I formulated, mainly for the purpose of an "easy-to-remember" approach when educating others on cyber security, prevention of social engineering etc. I didn't plagiarize It from anyone. You can well and truly use It. Simply add your policies and/or recommendations to each category. |