3 ms·
It's worth noting that this wasn't something the government did wrong. The information didn't reach the country's Information System Authority (ISA) through the
by usrme 9y ago
It's worth noting that this wasn't something the government did wrong. The information didn't reach the country's Information System Authority (ISA) through the proper channels, but rather through security researchers who had already informed the manufacturer months prior, though this is contested by the representatives of the manufacturer within the country who stated that they had informed ISA already in June.
This may have led people to believe the government just sat on this information, but I don't think this is the case. Thanks to quick acting from everybody involved (aside from Gemalto it seems...) no real downsides existed aside from people having to renew their certificates and PIN numbers, which was no real hassle.