UPnP has hidden security risks affecting global network equipment

Network security vendor Rapid7 said on the 29th that the widely used UPnP (Universal Plug and Play) technology on the market has many security vulnerabilities, and devices with UPnP are extremely vulnerable to hackers. In fact, in order to quickly install, facilitate connection, and save debugging, many of the devices we use every day can be plug and play. For example, our PCs, routers, printers, servers, surveillance cameras, storage devices, etc.

upnp

UPnP Plug-and-Play Vulnerability Outbreak Spreads Global Network Equipment

Rapid7 pointed out that researchers have identified three independent vulnerabilities in the UPnP technical standard, which will cause 40-50 million devices worldwide to be in sub-health state. Hackers can use these security holes to obtain files, passwords, and permissions, including remote control of these devices.

Rapid7 CTO Moore said that although hackers have not yet used UPnP vulnerabilities to implement attacks on a large scale, this is obviously a potential security risk. In order to urge equipment manufacturers to fix these vulnerabilities, they decided to announce these vulnerabilities. In addition, Mohr also recommends that users check their own devices and turn off UPnP as needed, because many devices are shipped with plug and play enabled by default.

Electronics Packaging

Electronics Packaging,Microwave Power Divider,Ceramics Used In Electronics,Electronic Communications Device

Shaanxi Xinlong Metal Electro-mechanical Co., Ltd. , https://www.cnxlalloyproduct.com