+72 72 0
Published 8 years ago by canuck with 2 Comments

Join the Discussion

  • Auto Tier
  • All
  • 1
  • 2
  • 3
Post Comment
  • xg549
    +5

    And while Whyte appears to have kept the code for his tool under wraps, Kamkar plans to release his on Github, timed to his DefCon talk Friday.

    This is something I don't understand. Surely there has to be some better way to bargain with the security companies than to just unleash a monster onto the public. How is it fair to put people at risk for an indefinite amount of time for the sake of motivating a security improvement that will take who knows how many months to ship?

    • a7h13f
      +4

      While I don't know about this case in particular, I have read stories like this one before where the code release is a measure of last resort usually taken out of frustration because the companies have politely ignored all communication about the issue and refuse to acknowledge it exists.

      Again, I don't have enough details to say whether or not that is what happened here, but I can definitely understand the mindset. People are already at risk, and if a few people have publicly announced this device, then you can be sure that there are criminal organizations that already have access to this tool. Companies need to be responsible and pro-active when it comes to the security of their products.

Here are some other snaps you may like...