Security quotes of the week
[Posted May 5, 2021 by jake]
Unless the UK moves towards a "one rule for politicians, another for
everyone else"-approach, if Boris can have end-to-end encrypted crypto, so
can we.
—
Alec
Muffett notes that Boris Johnson apparently uses WhatsApp and Signal,
thus enjoying the end-to-end encryption he is trying to ban
Security researchers Ralf-Philipp Weinmann of Kunnamon, Inc. and Benedikt
Schmotzle of Comsecuris GmbH have found remote zero-click security
vulnerabilities in an open-source software component (ConnMan) used in
Tesla automobiles that allowed them to compromise parked cars and control
their infotainment systems over WiFi. It would be possible for an attacker
to unlock the doors and trunk, change seat positions, both steering and
acceleration modes - in short, pretty much what a driver pressing various
buttons on the console can do. This attack does not yield drive control of
the car though.
—
kunnamon.io