Home

Your WD networked drive is vulnerable to remote attacks

IT | Mar 8, 2017 | Master3395

If you have one of Western Digital's My Cloud nstorage drives, you might be particularly vulnerable to internet attacks. Exploitee.rs has discovered a number of unpatched security flaws in most My Cloud models that let remote intruders bypass the login, insert their own commands and upload files without permission. In numerous cases, it's a matter of poorly implemented scripts. Also, every command exectued through the web interface has full access to the operating system -- an attacker would have the keys to the kingdom.
The kicker? WD did fix one login bypass flaw through a firmware update, but it introduced another in the process.

We've asked WD for its take on the situation and will let you know if it has a response. However, the Exploitee.rs team says it's revealing these pre-patch bugs to the public because of WD's "reputation within the community." Supposedly, the company doesn't pay attention to the seriousness of security flaws -- this open disclosure is a way of pressuring WD into action. True or not, you may not want to allow internet access to your My Cloud gear unless it's absolutely necessary.

Keywords: cloud, storage, MyCloud, vulnability

Author: Master3395

Comments:

comments powered by Disqus
Discord

Page 1 of 429  >  >>

When will it end? Now there are problems with the batteries as well

microsoft-surface-pro-4png.png

Aug 22, 2019 | Category: General | Comments

Surface is already struggling with CPU and WiFi.

read more…

Apple TV launches in November for $ 10 a month

appletvplus-800x459.jpg

Aug 21, 2019 | Category: Microsoft | Comments

At the same time increases the budget for original content.

read more…

US companies have 90 days to end Huawei cooperation

hua.jpg

Aug 20, 2019 | Category: General | Comments

But that's not to be kind to Huawei.

US authorities have decided to allow US companies to do business with Huawei a little longer. Just as Reuters reported yesterday.

read more…

Page 1 of 429  >  >>