Dataconomy
  • News
    • Artificial Intelligence
    • Cybersecurity
    • DeFi & Blockchain
    • Finance
    • Gaming
    • Startups
    • Tech
  • Industry
  • Research
  • Resources
    • Articles
    • Guides
    • Case Studies
    • Glossary
    • Whitepapers
  • Newsletter
  • + More
    • Conversations
    • Events
    • About
      • About
      • Contact
      • Imprint
      • Legal & Privacy
      • Partner With Us
Subscribe
No Result
View All Result
  • AI
  • Tech
  • Cybersecurity
  • Finance
  • DeFi & Blockchain
  • Startups
  • Gaming
Dataconomy
  • News
    • Artificial Intelligence
    • Cybersecurity
    • DeFi & Blockchain
    • Finance
    • Gaming
    • Startups
    • Tech
  • Industry
  • Research
  • Resources
    • Articles
    • Guides
    • Case Studies
    • Glossary
    • Whitepapers
  • Newsletter
  • + More
    • Conversations
    • Events
    • About
      • About
      • Contact
      • Imprint
      • Legal & Privacy
      • Partner With Us
Subscribe
No Result
View All Result
Dataconomy
No Result
View All Result

Alleged Webex flaws leave Bundeswehr meetings exposed

The Bundeswehr addressed this security flaw within 24 hours of its discovery

byKerem Gülen
May 7, 2024
in News, Cybersecurity
Home News

It is uncovered that thousands of confidential Bundeswehr video conference links were publicly accessible due to predictable URLs.

The Bundeswehr addressed this security flaw within 24 hours of its discovery, although their practice of not deleting old recordings persisted, posing ongoing risks.

What happened?

Zeit Online‘s investigation revealed that as of last Friday, the internet had several thousand accessible links to video conferences containing sensitive Bundeswehr details, with many marked confidential. The military confirmed that this vulnerability was rectified within a day of becoming aware.

Stay Ahead of the Curve!

Don't miss out on the latest insights, trends, and analysis in the world of data, technology, and startups. Subscribe to our newsletter and get exclusive content delivered straight to your inbox.

A military spokesperson assured AFP that unauthorized access to these video conferences was not feasible without the attendees being aware or without proper permissions. Additionally, the Bundeswehr had a practice of not routinely removing old video recordings. Metadata such as the timing, attendees, and subjects of the meetings held via the Cisco Webex system were exposed to external parties for several months.

It is highlighted in the report that the meeting URLs, which were sequentially numbered, could potentially be predicted, exposing details about past and future sessions. Additionally, it was possible to compile datasets of email addresses using identifiers like first and last names from the system.

Alleged Webex flaws leave Bundeswehr meetings exposed
Alleged Webex flaws leave Bundeswehr meetings exposed (Image credit)

The inclusion of telephone dial-in options for the conferences introduced further vulnerabilities due to the absence of encryption and robust identification measures for participants. The research by Zeit Online was prompted by findings from the Netzbegrünung association’s security experts. Netzbegrünung has voiced concerns over the reliance on Cisco’s Webex platform, pointing out that alternative open-source video conferencing tools offer superior privacy settings by default.

The report also underscores Cisco’s ongoing issues in IT security, which have negatively impacted its reputation. It is likely that Cisco engineers familiar with the Webex system were aware of the fundamental issue related to the predictability of meeting IDs. However, rather than addressing this flaw directly in the software or informing customers about the vulnerability, Cisco’s marketing efforts appear focused on promoting a new, costly product named Hypershield, which is touted with the appealing yet questionable use of AI. This approach seems to prioritize sales over genuine security solutions.


Featured image credit: Blake Connally/Unsplash

Tags: CybersecurityFeatured

Related Posts

M&S: Rachel Higham resigns after cyberattack

M&S: Rachel Higham resigns after cyberattack

September 15, 2025
OpenAI launches Grove program for early AI founders

OpenAI launches Grove program for early AI founders

September 15, 2025
Gmail hit by AI prompt injection attack via calendar

Gmail hit by AI prompt injection attack via calendar

September 15, 2025
Galaxy S25 gets stable One UI 8 with Android 16

Galaxy S25 gets stable One UI 8 with Android 16

September 15, 2025
FreeVPN.one Chrome extension stole user screenshots

FreeVPN.one Chrome extension stole user screenshots

September 15, 2025
AI agents can be controlled by malicious commands hidden in images

AI agents can be controlled by malicious commands hidden in images

September 15, 2025

LATEST NEWS

M&S: Rachel Higham resigns after cyberattack

OpenAI launches Grove program for early AI founders

Gmail hit by AI prompt injection attack via calendar

Galaxy S25 gets stable One UI 8 with Android 16

FreeVPN.one Chrome extension stole user screenshots

AI agents can be controlled by malicious commands hidden in images

Dataconomy

COPYRIGHT © DATACONOMY MEDIA GMBH, ALL RIGHTS RESERVED.

  • About
  • Imprint
  • Contact
  • Legal & Privacy

Follow Us

  • News
    • Artificial Intelligence
    • Cybersecurity
    • DeFi & Blockchain
    • Finance
    • Gaming
    • Startups
    • Tech
  • Industry
  • Research
  • Resources
    • Articles
    • Guides
    • Case Studies
    • Glossary
    • Whitepapers
  • Newsletter
  • + More
    • Conversations
    • Events
    • About
      • About
      • Contact
      • Imprint
      • Legal & Privacy
      • Partner With Us
No Result
View All Result
Subscribe

This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy Policy.