Vulnerabilities Detected in Some VPNs for IoT Devices

The use of VPN services is something that is increasingly present among users. There are many options that we have at our disposal, since they are available for all types of operating systems and devices. Now, the truth is that sometimes we can run into problems that put our security and vulnerability at risk. In this article we echo a news that alerts about a series of home VPNs that have vulnerabilities.

Claroty detects VPN tools with vulnerabilities

This is a report they have made from Claroty . They have discovered that a number of home-oriented VPN tools have vulnerabilities. These failures could be exploited and therefore our privacy and security at risk.

Vulnerabilities Detected in Some VPNs

This company has indicated that these are VPN services that are used especially for IoT devices . We already know that we have more and more computers than is known as the Internet of Things. Every time our homes have more devices connected to the network and on many occasions we choose to use VPN tools.

An example is the Secomea GateManager tool, which is used to access certain IoT devices, also in companies. One of the biggest issues is the improper handling of some of the client provided HTTP request headers. This could result in a complete security breach that grants full access to a customer’s internal network, as well as the ability to decrypt traffic passing through the VPN.

Another bug in the Moxa VPN could allow an attacker to use a specially crafted HTTP request to trigger an overflow on the system’s web server and perform remote code execution without the need for any credentials.

Claroty contacted the VPN services that they found with vulnerabilities and ensured that they would resolve the problems as soon as possible.

VPN gratuitas y de prueba

The importance of running security flaws

Keep in mind that vulnerabilities can occur multiple times. We may be victims of attacks that take advantage of security flaws. That is why we must always have the latest versions available, whether it is the operating system, applications or any tool we use.

In this case we have seen vulnerabilities that affect some VPNs related to IoT devices, but on other occasions we have seen many problems that have affected important platforms and services. It is always advisable to have our equipment correctly updated and be aware of all the versions that are coming out.

Regarding the use of VPN services , we should always choose one that suits what we need, but we must focus on security. There are tools that can compromise our security and privacy, so we must correctly choose which one to use. We leave you an article with the best VPN services to browse privately.