Get a Pentest and security assessment of your IT network.

Cyber Security

Critical RCE Bug Found Lurking in Avaya VoIP Phones

A decade-old remote code-execution bug has been found, unpatched, in an Avaya desk phone that s used at 90 percent of Fortune 100 companies. If exploited, attackers could remotely take over the operation of the phone, exfiltrate audio and potentially even bug the phone to listen in continuously. The same bug was reported in 2009, yet its presence in the phone’s firmware remained unnoticed until now. Avaya published a firmware image that resolves the issue on June 25 admins are urged to update their gear, but it may take a while for protections to roll out across the attack surface.

Source: https://threatpost.com/critical-rce-bug-avaya-voip-phones/147122/

Related posts
Cyber Security

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

Cyber Security

Art of Twitter account hacking

Cyber Security

Alexa Eavesdropping Flub Re-Sparks Voice Assistant Privacy Debate

Cyber Security

Dan Geer, Richard Thieme on specialization in security