The Register
UK · 11 hrs ago
Chinese router vendor denies its firmware contains backdoors – but pauses downloads to fix security issues anyway
REG AD Security It’s just a remote maintenance function, says Zbtlink Chinese Wi-Fi router vendor Zbtlink has denied its products contain backdoors but paused firmware downloads while it fixes unspecified security vulnerabilities.The backdoor accusation came from VulnCheck, a provider of a threat intelligence platform.VulnCheck chief technology officer Jacob Baines posted the backdoor allegation on Wednesday and said the Zbtlink device on his desk “continuously attempts to reach a command and control server on the internet.” REG AD “Zbtlink routers phone home, waiting for orders. Not because they were hacked. Because they were shipped that way.” REG AD Baines named the backdoor “ENDLESSDOORS” and says it’s “a small tool called rctl (remote control linux). Uploaded to GitHub on January 14,
Do you trust The Register?
Sign in to rate
Discussion
?
No comments yet — be the first to start the discussion!