RedTeam Quoted In CNN Article On AMX Backdoor

Get a Customized Proposal

Today, RedTeam Security was asked to provide commentary on a CNN Money breaking news story regarding the discovery of a hidden backdoor within a popular conference calling product built by AMX. AMX manufactures conference calling equipment used by many organizations world wide, including the US Government.

The recently uncovered research shows the company hard-coded backdoor access into its system. AMX created a “secret account” with a permanent username and password, which means a hacker who already sneaked into a computer network could tap into actual meetings, if the hacker knew the backdoor access code.

What’s More: Analysis of the hard-coded account credentials proved to be merely obfuscated with Base64 encoding — an extremely primitive method for obfuscating information, let alone sensitive data like passwords. Anyone with a computer and a free copy of Olly Dbg has the necessary tools to discover and decode the hard-coded username and password for these systems.

Credits: CNNMoney (New York)
Photo credits: Getty/CNNMoney

Get a FREE Security Evaluation Today

Read More Articles

Categories

10-Point Offensive Security Checklist

Get A Bird’s Eye View Of Your Organization’s Security Readiness
10-Point Offensive Security Checklist

Featured On

National TV news and media outlets often consult with us for our expertise as a boutique, high-touch ethical hacking firm highly trained in a narrow field of cybersecurity. Please click on any logo below to view the featured story.

友情链接: 1 2 3 4 5 6 7 8 9 10