Detroit man steals 800 gallons using Bluetooth to hack gas pumps at station::undefined

    • foggy@lemmy.world
      link
      fedilink
      English
      arrow-up
      23
      arrow-down
      5
      ·
      edit-2
      1 year ago

      Transport layer is absolutely a security vulnerability vector.

      TCP is absolutely low security if not configured correctly.

      I don’t know what it is you’re trying to say. I agree that this instance was probably security through obscurity failing, but to say that Bluetooth, TCP, and other transport layer protocols are not security considerations is absolutely ridiculous (see for example, heartbleed). It’s exactly the reason there are multiple versions of Bluetooth. It’s why FTP is (should be) all but deprecated and SFTP and FTPS are standard. It’s why Google doesn’t index webpages without an SSL certificate.

      USB is way safer

        • foggy@lemmy.world
          link
          fedilink
          English
          arrow-up
          3
          arrow-down
          5
          ·
          1 year ago

          Okay, but your claim that my comparing Bluetooth to USB being like comparing Bluetooth to TCP is misinformed at best.

            • foggy@lemmy.world
              link
              fedilink
              English
              arrow-up
              2
              arrow-down
              2
              ·
              1 year ago

              You can disable a USB port and require remote SSH to enable it.

              USB is way safer.

              • jarfil@lemmy.world
                link
                fedilink
                English
                arrow-up
                1
                arrow-down
                1
                ·
                1 year ago

                You can disable Bluetooth and require remote SSH to enable it… 🙄

                BTW, have you heard about BadUSB?

                • foggy@lemmy.world
                  link
                  fedilink
                  English
                  arrow-up
                  2
                  ·
                  1 year ago

                  It does not complicate things in a way that makes things less secure than using Bluetooth 4.0 or earlier.

                  USB is way safer.

                  It’s amusing that you won’t just give up and admit that the blanket statement is 100% accurate. But you do you; just remind me not to use any services that you’re on the opsec team for.