1. sheesh how could they be so dumb
2. i couldve caught this
and 3 is a tie between “backdoor in security agent” and “credentials lying on a public bucket”
1: Memory leak
2: Exposed credentials on Github/a bucket
3: Purposely placed back door in proprietary software that was found (won't be fixed, wait for next version)
Default admin password on some obscure modem, Default admin password on some obscure router, Default admin password on some obscure switch... ( Also Turns out the switch is a sub)
Don't forget TPLink having memory security issues on basically everything they release... I would bet money one of their products is not memory safe but hasn't been tested yet by a researcher.
Comments
1. sheesh how could they be so dumb
2. i couldve caught this
and 3 is a tie between “backdoor in security agent” and “credentials lying on a public bucket”
2: Exposed credentials on Github/a bucket
3: Purposely placed back door in proprietary software that was found (won't be fixed, wait for next version)
2) SQL Injection
3) SQL Injection