DHS Warns Of Flaws In U.S. Emergency Alert System

Share post:

The U.S. Department of Homeland Security has issued warning on identified vulnerabilities in the country’s emergency broadcast network.

The flaws identified by Ken Pyle, security expert at CYBIR.com could be used by attackers to issue false alerts via radio and television stations.

“We recently became aware of certain vulnerabilities in EAS encoder / decoder devices that, if not updated to most recent software versions, could allow an actor to issue EAS alerts over the host infrastructure (TV, radio, cable network),” the DHS’s Federal Emergency Management Agency (FEMA) warned.

According to Pyle, the vulnerabilities are in the Monroe Electronics R189 One-Net DASDEC EA, an encoder and decoder of the Emergency Alert System. The device is used by radio and television stations to transmit emergency alerts.

Pyle explained that these vulnerabilities have not been patched for several years and have now become a huge bug.

Pyle identified several actions for which the vulnerabilities can be exploited.

“I can easily obtain access to the credentials, certs, devices, exploit the web server, send fake alerts via crafts message, have them valid / pre-empting signals at will. I can also lock legitimate users out when I do, neutralizing or disabling a response,” Pyle noted.

The sources for this piece include an article in ArsTechnica.

Featured Tech Jobs

SUBSCRIBE NOW

Related articles

Cyber Security Today, March 27, 2024 – A botnet exploits old routers, a new malware loader discovered, and more warnings about downloading code from...

This episode reports on a new network of 40,000 infected small and home office routers and other devices that are part of a criminal botnet

Cyber Security Today, March 25, 2024 – A suspected China threat actor going after unpatched F5 and ScreenConnet installations

This episode reports on a new campaign stealing email passwords ,the latest data breaches

A hacker’s view of the civic infrastructure: Hashtag Trending, the Weekend Edition for March 23rd, 2024

What does the civic infrastructure look like through the eyes of a hacker? The legendary general Sun Tzu in the Art of War said that in order to defeat your enemy, you must first understand your enemy. How do you do this? He said, “to know your enemy, you must become your enemy.” If we

Cyber Security Today, Week in Review for week ending Friday, March 22, 2024

This episode features discussion on lessons learned from the ransomware attack on the British Library, advice for managing expectations of IT/security teams, why firms are leaving Google Firebase unprotecte

Become a member

New, Relevant Tech Stories. Our article selection is done by industry professionals. Our writers summarize them to give you the key takeaways