An Office Phone Flaw Can’t Be Fixed By Cisco Alone

At the SummerCon security conference in New York City on Friday, Cui and his Red Balloon colleague Yuanzhe Wu are presenting new findings about a vulnerability in more than a dozen models of Cisco IP desk phones. It can only be exploited with physical access to a target device, but if an attacker has managed that, they could gain full control of the phone, which they could then use to eavesdrop on calls, bug the surrounding room, or other malicious activities.

Read full article on Wired – Threat Level

 


Date:

Categorie(s):