Brian E Carpenter <[email protected]> wrote: >> So since you haven't got a keycode... what would you do?
> Like an ATM skimmer attack - collect keycodes that people key in?
But, you don't need network onboarding or even a keypad to do this.
Better you attack an existing keypad, right?
> Anyway, all I was really suggesting is that the Security Considerations
> need to explain why there is no vulnerability due to obtaining the list
> of pledges via mDNS.
okay.
--
Michael Richardson <[email protected]> . o O ( IPv6 IøT consulting )
Sandelman Software Works Inc, Ottawa and Worldwide
signature.asc
Description: PGP signature
_______________________________________________ Anima mailing list [email protected] https://www.ietf.org/mailman/listinfo/anima
