Mender blog

U.S. government imposes stricter IoT security measures on D-Link

Everyone in the industry knows IoT security is a mess. The industry has proven incapable of coping with cybersecurity problems as the commoditization of technology doesn’t allow for any unnecessary costs, including security.

Following an indictment of D-Link by Federal Trade Commission (FTC) back in 2017, a few weeks ago the parties agreed to a settlement that seems to put some real security measures in place to improve the protection of consumers from basic security vulnerabilities.

One of the requirements, which is close to our heart at Mender, is that D-Link now is obliged to provide automatic firmware updates, and accept vulnerability reports from security researchers for all of their home routers.

This might be a small step in the right direction, but hopefully it will set precedences among the other players in the industry. To read more about the settlement and its implications, see "U.S. government imposes stricter IoT security measures on D-Link".

Recent articles

The European Union Cyber Resilience Act (CRA): Why remediation requires over-the-air (OTA) updates

The European Union Cyber Resilience Act (CRA): Why remediation requires over-the-air (OTA) updates

Discover how over-the-air (OTA) updates are essential for meeting the EU Cyber Resilience Act (CRA) requirements.
CVE-2024-55959 - Insecure permissions on private key file generated by the Mender Client

CVE-2024-55959 - Insecure permissions on private key file generated by the Mender Client

A customer recently notified us of a security issue in Mender. On some versions, mender-auth generates private key files with non-strict file permissions.
Challenges in complying with the EU Cyber Resilience Act (CRA)

Challenges in complying with the EU Cyber Resilience Act (CRA)

Discover how manufacturers can achieve Cyber Resilience Act (CRA) compliance by tackling secure updates, SBOM management, and vulnerability tracking with robust OTA solutions.
View more articles

Learn why leading companies choose Mender

Discover how Mender empowers both you and your customers with secure and reliable over-the-air updates for IoT devices. Focus on your product, and benefit from specialized OTA expertise and best practices.

 
sales-pipeline_295756365