Dangerous backdoor exploit found on popular IoT devices
Found on Techradar on Sunday, 05 March 2017
The backdoor is in the Telnet admin interface of DblTek-branded devices, and potentially allows an attacker to remotely open a shell with root privileges on the target device.
However, rather than removing the flaw, the vendor simply made it more difficult to access and exploit. And further correspondence with the Chinese company has apparently fallen on deaf ears.
Surprise! IoT is often an insecure failure. Almost as worrying as the telnet port is the fact that obviously quite a few routers allow incoming traffic.