City
Epaper

Hackers might exploit bug in Amazon Kindle, company issues fix

By IANS | Updated: August 9, 2021 10:55 IST

New Delhi, Aug 9 A team of cyber-security researchers has discovered security flaws in popular e-reading device Amazon ...

Open in App

New Delhi, Aug 9 A team of cyber-security researchers has discovered security flaws in popular e-reading device Amazon Kindle that might have led hackers to take full control of a Kindle device, opening a path to stealing information stored.

The researchers disclosed its findings to Amazon and the company deployed a fix via a Kindle's firmware update in April this year. The patched firmware installs automatically on devices connected to the Internet.

"By sending Kindle users a single malicious e-book, a threat actor could have stolen any information stored on the device, from Amazon account credentials to billing information," said Yaniv Balmas, Head of Cyber Research at Check Point Software.

Kindle, like other IoT devices, are often thought of as innocuous and disregarded as security risks.

"But our research demonstrates that any electronic device, at the end of the day, is some form of computer. And as such, these IoT devices are vulnerable to the same attacks as computers," he added.

The exploitation involves sending a malicious e-book to a victim.

Once the e-book is delivered, the victim simply needs to open it to start the exploit chain.

No other indication or interactions are required on behalf of the victim to execute the exploitation.

The team proved that an e-book could have been used as malware against Kindle, leading to a range of consequences.

For example, an attacker could delete a user's e-books, or convert the Kindle into a malicious bot, enabling them to attack other devices in the user's local network.

"Amazon was cooperative throughout our coordinated disclosure process, and we're glad they deployed a patch for these security issues," the CPR team noted.

Disclaimer: This post has been auto-published from an agency feed without any modifications to the text and has not been reviewed by an editor

Tags: Amazon KindleYaniv balmasamazon
Open in App

Related Stories

TechnologyAmazon Web Services Down? Online Games Fortnite, Epic Games and ARC Raiders Face Glitches

InternationalWhite House Shooting: Suspect Rahmanullah Lakanwal Worked With Amazon and US Military, Say Reports

TechnologyAmazon Web Services Down: Snapchat, Amazon Prime, Among List of Apps and Websites Affected by Cloud Outage

EntertainmentAmazon Music India unveils ‘Track by Track’With Karan Aujla’s new album P-POP CULTURE

EntertainmentOTT Releases This Week: Pattth, Bhool Chuk Maaf, Jaat, Stolen and More; New Web Series and Movies for Your Weekend Watchlist

Technology Realted Stories

TechnologyIANS Year Ender 2025: Amaravati revival, big investment and road to trillion-dollar economy

TechnologyGovt rolled out key reforms in 2025 to enhance ease of doing business

TechnologyFrom 8th Pay Commission to LPG price hike: Key rule changes effective from Jan 1

TechnologyMaruti Suzuki India exports highest-ever 3.95 lakh vehicles in 2025

TechnologyAdani Group doubles down on green power as India’s energy consumption rises