Thread
Stories related to "Security vulnerabilities in BMW's ConnectedDrive" across the full archive.
Pretty serious, I think.
> Among the vulnerabilities are hardcoded credentials, which can allow "root" remote access to an affected device, giving an attacker full control over the router
Rails 3.2.13, 3.1.12, and 2.3.18 have been released fixing 4 security vulnerabilities
(weblog.rubyonrails.org)
Paper is in the repo, slides: http://users.ece.cmu.edu/~omutlu/pub/dram-row-hammer_kim_talk_isca14.pdf
> [..] In this talk, we present several methods that make *the large scale
security analyses of embedded devices* a feasible task. We implemented
those techniques in a scalable framework that we tested on real world data.
First, we collected a large number of firmware images from Internet
reposi...
Technical information begins on page 7 of the [whitepaper](https://www.checkpoint.com/downloads/resources/quadRooter-vulnerability-research-report.pdf).
See also the release notes: https://www.mozilla.org/en-US/firefox/50.0/releasenotes/
I felt the security fixes deserved more attention than "various security fixes".
After an intro to formal methods, it describes examples of hardware, software, and combined verifications of useful protection schemes. Recent work focuses more on HW/SW combined since it provides highest usability, security, and performance combination.
Computer Security, Privacy, and DNA Sequencing: Compromising Computers with Synthesized DNA, Privacy
(dnasec.cs.washington.edu)