Customize Consent Preferences

We use cookies to help you navigate efficiently and perform certain functions. You will find detailed information about all cookies under each consent category below.

The cookies that are categorized as "Necessary" are stored on your browser as they are essential for enabling the basic functionalities of the site. ... 

Always Active

Necessary cookies are required to enable the basic features of this site, such as providing secure log-in or adjusting your consent preferences. These cookies do not store any personally identifiable data.

No cookies to display.

Functional cookies help perform certain functionalities like sharing the content of the website on social media platforms, collecting feedback, and other third-party features.

No cookies to display.

Analytical cookies are used to understand how visitors interact with the website. These cookies help provide information on metrics such as the number of visitors, bounce rate, traffic source, etc.

No cookies to display.

Performance cookies are used to understand and analyze the key performance indexes of the website which helps in delivering a better user experience for the visitors.

No cookies to display.

Advertisement cookies are used to provide visitors with customized advertisements based on the pages you visited previously and to analyze the effectiveness of the ad campaigns.

No cookies to display.

admin
Pinned June 1, 2017

<> Embed

@  Email

Report

Uploaded by user
D-Link would like you to forget about its lax security
<> Embed @  Email Report

D-Link would like you to forget about its lax security

Andrew Dalton, @dolftown

May 11, 2017
 

MacFormat Magazine

Back in January, the US Federal Trade Commission accused D-Link of putting customers in harm’s way with its extremely negligent approach to security. According to the FTC, the company left hundreds of thousands of customers vulnerable to attack by failing to secure their routers and cameras against critical vulnerabilities. At the time, the company denied the allegations, claiming no one had been affected by an actual breach, but that didn’t change the fact that D-Link left crucial security information out in the open for months. Now the company is trying to have the case thrown out of court on the grounds that the US government has no jurisdiction over the company.

A federal judge in San Francisco agreed with that argument today and dismissed the Taiwan-based D-Link Corporation from the case, but the company isn’t quite off the hook yet. In a carefully worded press release written by small government, anti-regulation nonprofit Cause of Action Institute, the case is still proceeding against D-Link Systems, Inc. — the company’s California-based US subsidiary. It’s a minor legal matter, but D-Link and Cause of Action are using the opportunity to drum up some good PR and reiterate that the FTC has yet to show that anyone was actually harmed when the company left a painfully obvious backdoor in its router firmware and exposed devices to potential malware attacks.

The Cause of Action Institute, which is defending D-Link in court, also claimed the FTC’s allegations are “vague and unsubstantiated” even though the company sold IP cameras with hard-coded login credentials that anyone could use to view streams and couldn’t be changed by the user. In fact, D-Link’s security flaws are something of a running joke among hackers and security researchers. While the parent company is dodging a bullet here, the US-based subsidiary will still have to contest the complaint in court.

(29)