Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » Browser Hack Allows Router Control » So What
Search Topic:
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Post a:
Post a:
Change your router password! »
AuthorAll Replies


evilghost
Premium
join:2003-11-22
Springville, AL
·Windstream


1 edit
reply to lesopp
Re: So What

This attack uses CSRF to own the router... It's not about the outside getting in, it's about CSRF being used to repoint DNS to hostile servers so MITM attacks or DNS redirection (for phishing; likely) can be easily created.

In theory one could also load Linux powered firmware that would attack nearby APs using brute-force password guessing techniques after association to them as a client; of course this becomes less trivial if the AP is running WPA/WPA2. That would be more "wormlike".

Essentially, own a device with CSRF and use it to own nearby APs.
Forums » Browser Hack Allows Router ControlChange your router password! »


Wednesday, 02-Dec 10:32:38 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 10 years online! © 1999-2009 dslreports.com.republican-creole
page compression OFF
Most commented news this week
· [159] Comcast Releasing Promised Usage Meter
· [69] Baltimore To Ban Lazy Cable Installs
· [68] Latest Consumer Reports Survey Not Kind To AT&T
· [60] Broadband Killed The Game Console
· [52] Rogers Unveils The ISP Dream Model
· [45] ACTA: Global Three Strikes
· [41] Rural Carriers Quickly Embracing Fiber
· [35] Charter Exits Chapter 11
· [33] AT&T Top Lobbyist Cicconi Has His Feelings Hurt
· [29] College Student Unveils Sprint's GPS Sharing With Feds
Most people now reading
· Am I the only one that loves to work in IT? [No, I Will Not Fix Your #@$!! Computer]
· Data Usage Meter Launched [Comcast HSI]
· cleaning LCD [General Questions]
· So I found a gold mine... [World of Warcraft]
· Ooma changing features [VOIP Tech Chat]
· Need a better layout.. [Home Repair & Improvement]
· LFM Overkill [World of Warcraft]
· UBB round 2 at the CRTC [Canadian Broadband]
· [Newsgroups] Newzleech down? [Filesharing Software]
· Free SIP Providers [VOIP Tech Chat]