Fortinet, Palo, Checkpoint, Cisco, Sonicwall … is there any big firewall vendor that didn’t have any critical vulnerabilities last year?

  • Ⓜ3️⃣3️⃣ 🌌
    link
    fedilink
    3120 days ago

    Obsolete binaries not updated for years, hardcoded secrets… this is what you get in firewalls like any other piece of black box equipment.

    • @[email protected]
      link
      fedilink
      2120 days ago

      Security by obscurity may work in delaying exploits, but once someone breaks the obscurity, they have a headstart on exploiting it over those hoping to fix it.

      • Ⓜ3️⃣3️⃣ 🌌
        link
        fedilink
        520 days ago

        Or user sessions persist on the filesystem so a glitch on the captive portal’s web server allow you to get clear text username and password for currently connected vpn sessions …

  • slazer2au
    link
    English
    520 days ago

    No. And if there are any that say they didn’t I don’t believe them.

    • @[email protected]OP
      link
      fedilink
      418 days ago

      AFAIK not. This meme is targeted at commercial firewall appliances, that often have VPN/IPS/authentication and many other features that are exploited regularly.