无证API在谷歌家庭设备很容易利用

杰瑞Gamblin:

I am genuinely shocked by how poor the overall security of these devices are, even more so when you see that these endpoints have been known for years and relatively well documented.

I usually would have worked directly with Google to reboot these issues if they had not previously disclosed, but due to the sheer amount of prior work online and committed code in their own codebase, it is obvious they know.

很奇怪——你可以造成任何的这些设备重新启动或忘记与一个简单的无线网络旋度一行程序你必须在同一个本地网络,但仍然。

周二,2018年10月30日