Friday, January 22, 09:38
Home security Cirque du Soleil app: Hackers and managers have the same capabilities

Cirque du Soleil app: Hackers and managers have the same capabilities

CircusSome researchers by ESET revealed the existence of a problem security in an application of the Cirque du Soleil, on “Toruk - The First Flight”. The specific application was designed to enhance audience interaction through audiovisual elements. However, according to the researchers, when designing the application, little attention was paid to safety.

The Toruk application is available at Google Play and have installed more than 100.000 users. It is also available in App Store. However, it has not received any updates from 2016.

One of ESET's researchers, Lukáš Štefanko, discovered that "Whoever was associated with network, during the show, had the same management rights as the Cirque du Soleil operators. ”This means that hackers could also have administrative rights.

The application does not have authentication protocols. As a result, an open port - the 6161 port - could be used by hackers to remotely control the application that runs Toruk. The hackers they could make changes in volume, show specific content, and more.

An attacker could perform a scan to collect the IP addresses of vulnerable devices.

ESET tried to inform Cirque du Soleil in March and May, but received no response.

The researchers decided to reveal their findings publicly today, after the Toruk show was completed. The application is no longer required and needs to be uninstalled immediately.

Informally, Cirque du Soleil intends to remove the application from Google Play and it Apple App Store, now that the show is over.

The Cirque du Soleil team stated that it took into account the implementation risks. However, she felt they were not very serious. Instead, the damage that could be caused to the show, after five years of touring around the world, would be much greater if the application was removed earlier.


Please enter your comment!
Please enter your name here

Absent Mia
Absent Mia
Being your self, in a world that constantly tries to change you, is your greatest achievement


FBI: Parler is called in to investigate the Capitol attack

Participants in the January 6 attack on the US Capitol are accused of their actions, as they seem to have published in Parler and ...

Mac: How to see which model you have and when it was released

When you need support for your Mac - or want to install some kind of upgrade - you usually need to know the exact ...

Bill Gates: Will he work with Biden on COVID-19 / climate change?

Microsoft co-founder Bill Gates said on Twitter that he is looking forward to working with the new US President, Joe Biden, and ...

What are the rumors circulating about the iPhone 13?

Apple iPhone 13 will have a redesigned Face ID system that will have a smaller notch at the top of the screen, ...

Biden: How was the political transition in the US captured on social media?

As Joe Biden was sworn in as President of the United States, this important political transition was captured on popular social media. On January 20, ...

CentOS ceases to be supported but RHEL is offered for free

Last month, Red Hat caused a great deal of concern in the Linux world when it announced the discontinuation of CentOS Linux.

Microsoft Office 365 employee passwords leaked online!

A new large-scale phishing campaign targeting global organizations has been found to bypass Microsoft Office 365 Advanced Threat Protection (ATP) and ...

COSMOTE and Microsoft provide new cloud solutions for businesses

COSMOTE and Microsoft expand their cooperation, offering even more advanced and high quality cloud solutions, in large and small ...

Cyber ​​attacks in Eastern Europe are on the rise!

The cyber-attacks that have taken place in many US government agencies and companies in recent months have caused concern in the developing countries of ...

Tesla reduces the prices of the Model 3 in Europe

Tesla has reduced the prices of the Model 3 in many European markets, which reductions could be partly linked ...