logoalt Hacker News

rickdeckardtoday at 5:56 AM2 repliesview on HN

> The specific vulnerabilities exploited by rootmy.tv have been patched, yes, but there are plenty more unpatched vulnerabilities remaining.

But vulnerabilities that can be remotely exploited without user interaction (CVSS grade 9-10)?


Replies

Retr0idtoday at 5:58 AM

Yup. I'm sitting on one that doesn't even require an internet connection, only RF down the TV antenna input. I'm waiting for my model to go EOL before I release it.

show 3 replies
Brian_K_Whitetoday at 11:09 AM

Why do you even ask? Why do you even think this is at all unlikely?

It doesn't even matter what exploits are publicly known and closed at any given moment. What we know is that at every given moment, no matter what security hole was just found and closed right now in some device, always later it turns out there were others not yet known by you but known and used by someone. This has been everything with an OS for 40 years. So yes, of course, right now, on every tv, and everything else, from any manufacturer, there are "grade 9-10" exploits just sitting there. It's the default state not some exception.