Guest Jake Valletta, Director of Professional Services at Mandiant, joins Dave to talk about the critical vulnerability Mandiant disclosed that affects millions of IoT devices. Mandiant disclosed a critical risk vulnerability in coordination with the\xa0Cybersecurity and Infrastructure Security Agency\xa0(\u201cCISA\u201d) that affects millions of IoT devices that use the\xa0ThroughTek \u201cKalay\u201d\xa0network. This vulnerability, discovered by researchers on Mandiant\u2019s Red Team in late 2020, would enable adversaries to remotely compromise victim IoT devices, resulting in the ability to listen to live audio, watch real time video data, and compromise device credentials for further attacks based on exposed device functionality. These further attacks could include actions that would allow an adversary to remotely control affected devices.\nThe research can be found here:\nMandiant Discloses Critical Vulnerability Affecting Millions of IoT Devices\n\nLearn more about your ad choices. Visit megaphone.fm/adchoices