Whole Network Most Recent TOP10 Anti-Spam Tools Malware Spam Spam News

 

Hackers Targeting Routers Next?

Filed in archive Security measures by Sue Walsh on March 08, 2008

19169736.jpg
There is a great blog post on ZDNet about routers quite possibly being the next target for hackers. A "Router Hacking Challenge" was recently made, with the idea being to share attacks against a variety of routers. Here is an excerpt from the Full Discloser mailing list sharing the findings:
Here is a quick summary, in no particular order, of the types of vulnerabilities we are exhibiting: authentication bypass

a-to-c attacks

csrf (cross-site request forgeries)

xss (cross-site scripting)

call-jacking - like making your phone dial numbers or even survey room's sound where the phone resides

obfuscation/encryption deficiencies

UPnP, DHCP and mDNS problems - although not officially reported, most devices are affected

SNMP injection attacks due to poor SNMP creds

memory overwrites - well it is possible to overwrite the admin password while being in memory and therefore be able to login as admin

stealing config files

cross-file upload attacks - this is within the group of csrf attacks

remote war-driving - way cool

factory restore attacks

nformation disclosure

The idea of hackers focusing on routers isn't really all that surprising when you realize that most people simply leave theirs unsecured. Here in my neighborhood my wireless card picks up half a dozen networks, and only one is secure-mine. The others are wide open for anyone to jump on and enjoy. Check out this Blackhat presentation for more great info.


Advertisement


Permalink: Hackers Targeting Routers Next?
Tags: Anti  spam  Server  anti  spam  Anti  spam  for  exchange  Exchange  spam  Attachment  spam  Antiphishing  Spam  bl 

Trackback: http://www.creative-weblogging.com/cgi-bin/mt-tb.pl/116262



Advertisement


Advertisement


CW ToolbarInstall
RSSrss   | See all blog subscribe options
Googlegoogle   |   What is RSS?
Yahoo!yahoo
AddthisAddThis Feed Button
BloglinesBloglines
Newsletter
Advertisement - Book yours here.

Use our search feature to look for other interesting posts

Just this blog Whole network
Apple iTunes




 
  • Would you like to have a new interactive marketing channel for your company? Learn more about Sponsored Blogs with Creative Weblogging. See how we helped companies like Weblin and cellity reach their goals.
  • Would you like to reach millions of blog readers every day? See you banner on hundreds of blogs with TierOneAds? Stay in control measuring conversion in real time. Register now.
  • Would you like to make more money blogging? Use TierOneAds a new platform that allows you as a blogger to set your prices per impression. Register now.
  • Do you have a blog with more than 50k page views from the US? Let us market your blog and earn great fix payments and bonuses.
  • Would you like to see your text link here? Let us know!
Advertisement
Book yours here.



  • Other blogs in the same channel in the Creative Weblogging Network







 
Tagcloud: Announcements Anti-Spam Tools Archival Tools Events Fight! Malware Phishing Security measures Spam Spam News Sponsored Post Spyware