Saik0-Lemmy
  • Communities
  • Create Post
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
Kid@sh.itjust.worksM to Cybersecurity@sh.itjust.worksEnglish · 2 months ago

Massive RSA Encryption Flaw Exposes Millions Of IoT Devices To Attack

informationsecuritybuzz.com

external-link
message-square
6
fedilink
34
external-link

Massive RSA Encryption Flaw Exposes Millions Of IoT Devices To Attack

informationsecuritybuzz.com

Kid@sh.itjust.worksM to Cybersecurity@sh.itjust.worksEnglish · 2 months ago
message-square
6
fedilink
A major security flaw has been found in RSA encryption keys used across the internet. Researchers discovered that about one in 172 online certificates are at
alert-triangle
You must log in or register to comment.
  • kibiz0r@midwest.social
    link
    fedilink
    English
    arrow-up
    12
    ·
    2 months ago

    Kinda misleading headline.

    It’s not a flaw in RSA, but the lack of entropy in lightweight devices without many inputs. ECC would have basically the same problem.

    Maybe “random number generation flaw” would be more accurate.

  • NaNin@lemmy.dbzer0.com
    link
    fedilink
    English
    arrow-up
    9
    arrow-down
    1
    ·
    2 months ago

    I’m not surprised. RSA is deprecated as a public key method in openssh. There’s no reiable implementation anywhere. Seems like IoT manufacturers consider security as an afterthought. Anyone pushing for anything other than ed25519 just wants to decrease your security footing

    • wise_pancake@lemmy.ca
      link
      fedilink
      English
      arrow-up
      7
      ·
      2 months ago

      This is why my house is free of IOT devices

      Their lack of security is not new.

      • Cheradenine@sh.itjust.works
        link
        fedilink
        English
        arrow-up
        8
        ·
        2 months ago

        How will you know when your toast is done? Unless you get a notification from an app, there is no way to be certain. Schrödinger’s toast bro.

        Laundry finished?

        Expired milk in the fridge?

        Toothbrush bristles need replacing?

        Their is no way to know, might as well live in a cave and bang rocks together.

    • Fermiverse@gehirneimer.de
      link
      fedilink
      arrow-up
      5
      ·
      2 months ago

      No problem the S in IoT stands for security

      ¯\(ツ)/¯

  • drspod@lemmy.ml
    link
    fedilink
    English
    arrow-up
    5
    ·
    2 months ago

    The referenced paper: https://www.keyfactor.com/wp-content/uploads/Factoring-RSA-Keys-in-the-IoT-Era-JD-Kilgallin-Keyfactor-IEEE-Conference.pdf

Cybersecurity@sh.itjust.works

cybersecurity@sh.itjust.works

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: [email protected]

c/cybersecurity is a community centered on the cybersecurity and information security profession. You can come here to discuss news, post something interesting, or just chat with others.

THE RULES

Instance Rules

  • Be respectful. Everyone should feel welcome here.
  • No bigotry - including racism, sexism, ableism, homophobia, transphobia, or xenophobia.
  • No Ads / Spamming.
  • No pornography.

Community Rules

  • Idk, keep it semi-professional?
  • Nothing illegal. We’re all ethical here.
  • Rules will be added/redefined as necessary.

If you ask someone to hack your “friends” socials you’re just going to get banned so don’t do that.

Learn about hacking

Hack the Box

Try Hack Me

Pico Capture the flag

Other security-related communities [email protected] [email protected] [email protected] [email protected] [email protected]

Notable mention to [email protected]

Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 92 users / day
  • 564 users / week
  • 1.5K users / month
  • 4.78K users / 6 months
  • 1 local subscriber
  • 7.15K subscribers
  • 2.68K Posts
  • 5.24K Comments
  • Modlog
  • mods:
  • Kid@sh.itjust.works
  • Lanky_Pomegranate530@midwest.social
  • BE: 0.19.9
  • Modlog
  • Legal
  • Instances
  • Docs
  • Code
  • join-lemmy.org