4 ms·
There is no specific information available about the nature of the vulnerabilities or possible mitigation. Arstechnica.com is sensationalizing the news, when i
by lebaux 6y ago
There is no specific information available about the nature of the vulnerabilities or possible mitigation.
Arstechnica.com is sensationalizing the news, when it comes to security I would rely on actual sec researchers.
https://blog.checkpoint.com/2020/08/06/achilles-small-chip-big-peril/ https://blog.checkpoint.com/2020/08/06/achilles-small-chip-b...
- acdha 6y agoI’m not sure what your point was: that’s the same article Ars linked, with the same message and no additional information because, as the Ars writer noted, they’re withholding details until the vendors fix it.
- afrcnc 6y agoNo. He's saying that without the technical details, Ars is overblowing this issue. Maybe exploitation requires radio gear of $5k and being present next to the victim while their BLE is turned on. Without the details, you can't say if this is a big issue or just another overhyped Check Point research paper, as this company has a history of doing.
- spoopyskelly 6y agoThe Ars article includes the CVEs.
- aryonoco 6y agoThe technical details are withheld for the time being until (presumably) systems are patched. The Ars article includes the CVEs, which is all the technical detail that's currently available.
- acdha 6y agoThat doesn’t make any sense: he said to trust the researchers, but Check Point is saying nothing different. If the theory was the different one you’re offering, the advice would be not to trust the researchers.
- sp332 6y agoCheckpoint does not say that just playing a video file can exploit these bugs.