A billion Wi-Fi devices suffer from a newly discovered security flaw

More than a billion internet-connected devices—including Apple's iPhone and Amazon's Echo—are affected by a security vulnerability that could allow hackers to spy on traffic sent over Wi-Fi.
The flaw, discovered by the cybersecurity firm ESET, effectively disarms the encryption used by a password-protected Wi-Fi network. This could let hackers watch the activity on the network as if it were wide open. But while this could mean victims are vulnerable to eavesdropping, software updates and other layers of security will likely prevent this attack from having catastrophic results.
Wh00ps: The vulnerability, dubbed Kr00k by researchers, affects devices with Wi-Fi chips by Broadcom and Cypress—used in a vast range of devices with wireless internet, including Apple, Google, and Samsung phones. But security updates have already been deployed to fix the issue, so the best advice is to make sure your computers, phones, and all internet-connected devices have the latest software and firmware.
Not good, not terrible: In a worst-case scenario, a significant amount of data would be exposed, including the websites you're visiting or messages you are sending. However, a lot of private communication on your Wi-Fi network should still be safe because of encryption used by websites themselves. So keep calm, salute the folks finding these problems, and carry on.
Deep Dive
Computing
What’s next for the world’s fastest supercomputers
Scientists have begun running experiments on Frontier, the world’s first official exascale machine, while facilities worldwide build other machines to join the ranks.
The future of open source is still very much in flux
Free and open software have transformed the tech industry. But we still have a lot to work out to make them healthy, equitable enterprises.
The beautiful complexity of the US radio spectrum
The United States Frequency Allocation Chart shows how the nation’s precious radio frequencies are carefully shared.
How ubiquitous keyboard software puts hundreds of millions of Chinese users at risk
Third-party keyboard apps make typing in Chinese more efficient, but they can also be a privacy nightmare.
Stay connected
Get the latest updates from
MIT Technology Review
Discover special offers, top stories, upcoming events, and more.