Home Technology Researchers say a bug let them add fake pilots to rosters used for TSA checks

Researchers say a bug let them add fake pilots to rosters used for TSA checks

by Admin
0 comment

A pair of safety researchers say they found a vulnerability in login programs for information that the Transportation Safety Administration (TSA) makes use of to confirm airline crew members at airport safety checkpoints. The bug let anybody with a “primary information of SQL injection” add themselves to airline rosters, probably letting them breeze by safety and into the cockpit of a industrial airplane, researcher Ian Carroll wrote in a weblog put up in August.

Carroll and his accomplice, Sam Curry, apparently found the vulnerability whereas probing the third-party web site of a vendor referred to as FlyCASS that gives smaller airways entry to the TSA’s Recognized Crewmember (KCM) system and Cockpit Entry Safety System (CASS). They discovered that after they put a easy apostrophe into the username subject, they acquired a MySQL error.

This was a really dangerous signal, because it appeared the username was straight interpolated into the login SQL question. Certain sufficient, we had found SQL injection and had been in a position to make use of sqlmap to verify the difficulty. Utilizing the username of ‘ or ‘1’=’1 and password of ‘) OR MD5(‘1’)=MD5(‘1, we had been in a position to login to FlyCASS as an administrator of Air Transport Worldwide!

As soon as they had been in, Carroll writes that there was “no additional examine or authentication” stopping them from including crew information and photographs for any airline that makes use of FlyCASS. Anybody who may need used the vulnerability may current a faux worker quantity to get by a KCM safety checkpoint, the weblog says.

TSA press secretary R. Carter Langston denied that, telling Bleeping Laptop that the company “doesn’t solely depend on this database to authenticate flight crew, and that “solely verified crewmembers are permitted entry to the safe space in airports.”

You may also like

Leave a Comment