Menu
Sign In Search Podcasts Libraries Charts People & Topics Add Podcast API Blog Pricing

Jack Rhysider

๐Ÿ‘ค Speaker
944 total appearances

Appearances Over Time

Podcast Appearances

Darknet Diaries
174: Pacific Rim

Not only that, Sophos was worried that they had lost capability to update any of their firewalls properly.

Darknet Diaries
174: Pacific Rim

So the attackers took copies of the configurations from the firewalls and then passwords from it?

Darknet Diaries
174: Pacific Rim

This was a pretty darn scary event for the Sophos team to handle.

Darknet Diaries
174: Pacific Rim

Okay, step one, fix the bug that made these things vulnerable.

Darknet Diaries
174: Pacific Rim

And step two is get the bug fixed on as many firewalls as soon as possible.

Darknet Diaries
174: Pacific Rim

They were able to complete step one pretty quick, but step two was a little bit more tricky.

Darknet Diaries
174: Pacific Rim

If you buy a firewall, whether for your home or a large enterprise, typically you've got to update it yourself, just like how you have to do your own software updates on your phone or computer.

Darknet Diaries
174: Pacific Rim

And Sophos firewalls are no different.

Darknet Diaries
174: Pacific Rim

The customers are the ones who have to issue updates for this thing.

Darknet Diaries
174: Pacific Rim

But to Sophos, this was too critical of a bug to try to tell 80,000 customers, go update your firewalls.

Darknet Diaries
174: Pacific Rim

Because I'm just guessing that like less than 50% of them would do it in the first month.

Darknet Diaries
174: Pacific Rim

There's just not enough time or it's not a high enough priority for them to fix it.

Darknet Diaries
174: Pacific Rim

So Sophos decided to do something they've never done before.

Darknet Diaries
174: Pacific Rim

This was the first time Sophos ever issued a hotfix to one of their customers' devices.

Darknet Diaries
174: Pacific Rim

Yeah, I think this is a really big deal.

Darknet Diaries
174: Pacific Rim

Like, it makes me wonder if there's language in the small print of the terms of service that says Sophos reserves the right to make configuration changes to your firewall or update it whenever they want.

Darknet Diaries
174: Pacific Rim

Gosh, I really don't know where I stand on this.

Darknet Diaries
174: Pacific Rim

I was a firewall admin for my previous employer for 10 years.

Darknet Diaries
174: Pacific Rim

Those Cisco firewalls were my babies.

Darknet Diaries
174: Pacific Rim

I knew everything about them.