Information Security News mailing list archives

Google Glass Had a Vulnerability for Being Taken Over Via QR Code, But It Has Been Fixed


From: InfoSec News <alerts () infosecnews org>
Date: Thu, 18 Jul 2013 07:45:13 +0000 (UTC)

http://allthingsd.com/20130717/google-glass-had-a-vulnerability-for-being-taken-over-via-qr-code-but-its-been-fixed/

By Liz Gannes
AllThingsD.com
July 17, 2013

A Google Glass security vulnerability that allowed an outsider to take control of the wearable computing device via QR code has been fixed.

Basically, since Glass allows users to connect to Wi-Fi by taking a picture of a QR code, it’s possible that someone could trick a Glass wearer to unwittingly join an access point that allowed someone else to remotely control Glass and to stream the display via Bluetooth.

Lookout Security found the flaw and reported it to Google on May 16, and it was fixed in a software update on June 4. Here’s an animation that explains the risk of the vulnerability.

This is an instance of security folks liking to prove they are good guys by finding flaws in other people’s products and reporting them — and then bragging about them after the fact.

[...]
--
Find the best InfoSec talent without breaking your budget!
Post a Job! $99 for 31 days
http://www.hotinfosecjobs.com/

Current thread: