Get a Pentest and security assessment of your IT network.

News

Critical authentication flaw in DJI drone web app fixed

Check Point researchers found a vulnerability in the user authentication process that would have let an attacker hijack user accounts and gain access to DJI’s web store, cloud server data, and FlightHub. DJI drones are widely used in industry, manufacturing, agriculture, and critical infrastructure. The vulnerability was accessed through DJI Forum, an online forum DJI runs for discussions about its products, the researchers concluded in their report. A social engineering attack on the DJI forum would have been enough to compromise thousands of drones.”]

Source: https://www.csoonline.com/article/3318640/critical-authentication-flaw-in-dji-drone-web-app-fixed.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Botnet authors use Evernote account as C&C Server

News

Canadian agency breached as hackers exploit CVE-2017-5638 flaw in Apache Struts 2