Why in the HELL are there IoT vending machines in the CIA? Even I know IoT devices are not secure especially if they are coming from a vendor. If anything, the vending machine company should be held responsible for not providing enough security on their device that could have allowed rogue elements to access it and use it for breaking into internal network resources based on it being on-site. WTF!?
Somewhere down the line this had to have been used for some sort of Identity Theft usage as well right? I just can't find the handle. Can anyone find a way to leverage what was just exposed and how it can pertain to identity theft?