this post was submitted on 09 Nov 2024
43 points (100.0% liked)

Cybersecurity

5662 readers
354 users here now

c/cybersecurity is a community centered on the cybersecurity and information security profession. You can come here to discuss news, post something interesting, or just chat with others.

THE RULES

Instance Rules

Community Rules

If you ask someone to hack your "friends" socials you're just going to get banned so don't do that.

Learn about hacking

Hack the Box

Try Hack Me

Pico Capture the flag

Other security-related communities !databreaches@lemmy.zip !netsec@lemmy.world !cybersecurity@lemmy.capebreton.social !securitynews@infosec.pub !netsec@links.hackliberty.org !cybersecurity@infosec.pub !pulse_of_truth@infosec.pub

Notable mention to !cybersecuritymemes@lemmy.world

founded 1 year ago
MODERATORS
 

More than 60,000 D-Link network-attached storage devices that have reached end-of-life are vulnerable to a command injection vulnerability with a publicly available exploit.

top 5 comments
sorted by: hot top controversial new old
[–] Zachariah@lemmy.world 9 points 3 days ago

Hey, that’s fine. Just open source the firmware/OS. The FOSS community will take care of it.

[–] over_clox@lemmy.world 8 points 3 days ago (1 children)

D-Link has more or less always been crap as far as security goes.

[–] aard@kyu.de 8 points 3 days ago

You can drop that as far as clause.

Long time ago I got a small screw driver from a D-Link employee with the comment that this is the only non shit item with D-Link branding.

[–] stoy@lemmy.zip 4 points 3 days ago

Who would be stupid enough to connect a NAS directly to the internet?

Oh...

We were:

https://www.edpb.europa.eu/news/national-news/2021/swedish-dpa-investigation-1177-incident-finalized_en

[–] CaptObvious@literature.cafe 2 points 3 days ago

Glad I don’t own any D-Link products