Emergency Alert System Flaws Could Let Attackers Transmit Fake Messages

Cyber Security

Products You May Like

The U.S. Department of Homeland Security (DHS) has warned of critical security vulnerabilities in Emergency Alert System (EAS) encoder/decoder devices.

If left unpatched, the issues could allow an adversary to issue fraudulent emergency alerts over TV, radio, and cable networks.

The August 1 advisory comes courtesy of DHS’ Federal Emergency Management Agency (FEMA). CYBIR security researcher Ken Pyle has been credited with discovering the shortcoming.

CyberSecurity

EAS is a U.S. national public warning system that enables state authorities to disseminate information within 10 minutes during an emergency. Such alerts can interrupt radio and television to broadcast emergency alert information.

Emergency Alert Systems

Details of the flaw have been kept under wraps to prevent active exploitation by malicious actors, although it’s expected to be publicized as a proof-of-concept at the DEF CON conference to be held in Las Vegas next week.

CyberSecurity

“In short, the vulnerability is public knowledge and will be demonstrated to a large audience in the coming weeks,” the agency said in the bulletin.

To mitigate the vulnerability, relevant participants are recommended to update the EAS devices to the latest software versions, secure them with a firewall, and monitor and audit review logs for signs of unauthorized access.

Products You May Like

Articles You May Like

ISRO and IIT Guwahati Discover New Challenges in Theories of X-Ray Pulsar
Atlassian Confluence Vulnerability Exploited in Crypto Mining Campaigns
Google Pay Announces UPI Circle, UPI Vouchers and More Features at Global Fintech Fest 2024
Atlantic Ocean Might Be Undergoing a Rapid Cooling Near Equator And Scientists Do Not Know Why
Redmi 14C With 6.88-Inch LCD Screen, MediaTek Helio G81 Chipset Launched: Price, Specifications

Leave a Reply

Your email address will not be published. Required fields are marked *