Hacking the Supply Chain – The Ripple20 Vulnerabilities Haunt Tens of Millions of Critical Devices

This is the story of how we found and exploited a series of critical vulnerabilities (later named Ripple20) affecting tens or hundreds of millions of IoT devices across all IoT sector conceivable — industrial controllers, power grids, medical, home, networking, transportation, enterprise, retail, defense, and a myriad of other types of IoT devices, manufactured and deployed by the largest American and international vendors in these fields.

By Shlomi Oberman, Moshe Kol, & Ariel Schön

Full Abstract & Presentation Materials: https://www.blackhat.com/us-20/briefings/schedule/index.html#hacking-the-supply-chain—the-ripple-vulnerabilities-haunt-tens-of-millions-of-critical-devices-19493


