Free Republic
Browse · Search
General/Chat
Topics · Post Article


1 posted on 04/04/2017 6:33:53 PM PDT by markomalley
[ Post Reply | Private Reply | View Replies ]


To: Swordmaker

ping!


2 posted on 04/04/2017 6:44:24 PM PDT by BullDog108 (A Smith & Wesson beats four aces!)
[ Post Reply | Private Reply | To 1 | View Replies ]

To: markomalley

A purposefully undefended system (can you guess why?) and a decades old attack vector yields root.

Shocking, shocking!


4 posted on 04/04/2017 7:33:32 PM PDT by Mr. M.J.B.
[ Post Reply | Private Reply | To 1 | View Replies ]

To: markomalley

The linked article is most interesting.

It seems like TDLS has to be carefully implemented. The standard put in all sorts of checks to make sure the devices establishing a TDLS connection were on the same network, but it seems like this vendor left in code that allows send a tunneled probe request without even having a TDLS connection. That was probably for convenience in debugging, but when you move something to production you’re supposed to take these hooks out.

Looking at the overall architecture described in the article, it looks pretty much like a kludge. They probably had multiple programmers working on it, and had to allow executable code in the stack to maintain memory-management discipline among the team.


5 posted on 04/04/2017 7:37:32 PM PDT by proxy_user
[ Post Reply | Private Reply | To 1 | View Replies ]

To: markomalley

They keep writing programs and writing programs and never get it quite right. Let’s hope the people who write programs for what is called “artificial intelligence “ have more talent than that.


9 posted on 04/04/2017 8:25:18 PM PDT by I want the USA back (Islam mandates warfare against unbelievers and is absolutely incompatible with Western society.)
[ Post Reply | Private Reply | To 1 | View Replies ]

To: markomalley

I haven’t a clue what any of that means——but I have an IPod.

Oh well.

.


10 posted on 04/04/2017 8:27:31 PM PDT by Mears
[ Post Reply | Private Reply | To 1 | View Replies ]

To: markomalley
Let's see if Samsung pushed out fix through its Knox security system for the Galaxy S6 and S7 phones.
11 posted on 04/04/2017 8:42:46 PM PDT by RayChuang88 (FairTax: America's economic cure)
[ Post Reply | Private Reply | To 1 | View Replies ]

To: markomalley

https://www.forbes.com/sites/gordonkelly/2017/04/04/apple-ios-10-3-1-should-you-upgrade/#1be046a757ad

Forbes says take a deep breath everyone, this is a minor point upgrade and unless you work in a high security environment you can wait 24 to 48 hours for the dust to settle.


15 posted on 04/05/2017 5:25:09 AM PDT by yldstrk (My heroes have always been cowboys)
[ Post Reply | Private Reply | To 1 | View Replies ]

Free Republic
Browse · Search
General/Chat
Topics · Post Article


FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson