3 ms·
Yeah, but remember how they found it? On Netgear's website! In their firmware images! It wasn't like they had to hack a router, get root, and exfil the keys. A
by cipherboy 7y ago
Yeah, but remember how they found it? On Netgear's website! In their firmware images!
It wasn't like they had to hack a router, get root, and exfil the keys. All of this data was already made public, by Netgear! They just put together a document with prettier forms for everyone else to see.
Hell, they probably could've given you a shell one liner to grab it from Netgear and extract the keys yourself. :-)
Edit: and the Comodo-issued cert is already revoked. I'm too lazy to pull the other cert but I'd bet that it's revoked too.
- dlgeek 7y agoIt's still not, as of the time of this comment: https://crt.sh/?id=1955992027&opt=ocsp https://crt.sh/?id=1955992027&opt=ocsp
- borumpilot 7y agoIt's still not, as of the time of this comment.