TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

HP admits to backdoors in storage products

185 点作者 iProject将近 12 年前

7 条评论

kryten将近 12 年前
1. SSH to the box<p>2. Username: hpsupport<p>3. Password (from SHA1 lookup): badg3r5<p>Yes that shit.<p>We have some of this kit in and I&#x27;ve tested it and it works absolutely spot on. Fortunately it&#x27;s all firewalled off but it&#x27;s not the sort of crap you want on your doorstep.<p>Nothing to do with the NSA this - just a crappy decision somewhere which is designed to make HP support&#x27;s life easier. As someone else said: this bug is as old as time.
评论 #6025557 未加载
评论 #6026626 未加载
RexRollman将近 12 年前
I just don&#x27;t understand why companies are still pulling this crap. It puts their customers at risk.
评论 #6024651 未加载
评论 #6025170 未加载
blinkingled将近 12 年前
Misleading article title. (What better to expect from The Register?) HP admitted there&#x27;s a vulnerabiity that with customer provided access and permission can allow HP support to access underlying os of the storage device. At most a reboot is possible not data access. So this is just another stupid vulnerability that&#x27;ll be fixed soon - not a backdoor.
评论 #6024630 未加载
评论 #6025286 未加载
评论 #6024566 未加载
coldcode将近 12 年前
Sadly our parent company uses HP to handle all security and computer support&#x2F;installation. Around here they are known as Helpless People.
Fuxy将近 12 年前
HP nicely covering their ass to not get associated with the NSA scandal happening at the moment. I don&#x27;t know if the fact that they are trying so hard is an indication that they actually are but this is suspicious.
exgeocitiesuser将近 12 年前
this keeps getting better and better
sgloutnikov将近 12 年前
Looks more like name&#x2F;brand smearing to me (from the competition?). Especially convenient in the midst of the NSA scandal.
评论 #6025481 未加载