Happy Monday!
CVE-2019-15126 or more affectionately "Krook" is a vulnerability in Broadcom and Cypress Wi-Fi chips that allows unauthorized decryption of some WPA2-encrypted traffic. These are the most common Wi-Fi chips used by well-known manufacturers including Amazon (Echo, Kindle), Apple (iPhone, iPad, MacBook), Google (Nexus), Samsung (Galaxy). Wi-Fi Access points and routers are also affected by Kr00k, making even environments with patched client devices vulnerable. All-in-all, before patching there were more than a billion affected devices. What is the state of patching of Kr00k for iOS, MacOS, Cisco, and Huawei devices? Check here. For more info watch the RSA Conference presentation here.