Huge Survey of Firmware Finds No Security Gains in 15 Years
ID: 27393801-e9c0-50b8-842b-a7cf48955dc9
STIX ID: report--27393801-e9c0-50b8-842b-a7cf48955dc9
Feed Name: Security Ledger
Threat Score
CITL surveyed over 6,000 firmware images from 18 vendors spanning 2003–2018 and found pervasive lack of basic security hardening (ASLR, stack guards, non-executable stacks) with no clear improvement over time; the report warns this systemic failure in firmware build practices leaves routers, cameras and other embedded devices highly susceptible to large-scale compromise (Mirai-style botnets) and urges vendors to adopt simple build flags and post-build testing.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
