Article 4C0RH UK cyber security officials report Huawei’s security practices are a mess

UK cyber security officials report Huawei’s security practices are a mess

by
Sean Gallagher
from Ars Technica - All content on (#4C0RH)
GettyImages-1128738083-800x534.jpg

Enlarge / As Huawei makes its bid to roll out 5G, a UK government oversight board is not exactly thrilled with the company's security practices-or how it makes software. (credit: Getty Images)

In November of 2010, the Chinese networking and telecommunications giant Huawei entered into an agreement with the government of the United Kingdom to allow extensive security reviews of Huawei's hardware and software-a move intended to allay fears that the company posed a security risk to the UK's networks. Since then, the Huawei Cyber Security Evaluation Centre (HCSEC) has given UK officials a window into the company's information security practices. And UK officials haven't necessarily liked what they've seen.

In a report issued today, the HCSEC Oversight Board-a panel including officials from the National Cyber Security Centre, GCHQ and other agencies, as well as a senior executive from Huawei-warned that Huawei had failed to make long-promised changes to its software development and engineering practices needed to improve security.

"HCSEC's work has continued to identify concerning issues in Huawei's approach to software development bringing significantly increased risk to UK operators," the oversight board members noted. "No material progress" had been made in correcting those problems since they were noted last year.

Read 8 remaining paragraphs | Comments

index?i=yqh6uJkBUD4:NagNgmNqTPw:V_sGLiPB index?i=yqh6uJkBUD4:NagNgmNqTPw:F7zBnMyn index?d=qj6IDK7rITs index?d=yIl2AUoC8zA
External Content
Source RSS or Atom Feed
Feed Location http://feeds.arstechnica.com/arstechnica/index
Feed Title Ars Technica - All content
Feed Link https://arstechnica.com/
Reply 0 comments