Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » Up and Running » Security » Security » El Cheapo Router Challenge
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Posting:
Post a:
Post a:
FoxTrot Cartoon on spam... »
« Weird Download Popup  

Link Logger
Premium,MVM
join:2001-03-29
Calgary, AB
·Shaw

Re: NAT Challenge

said by Daniel See Profile :

Can we have you surf and such while we try? I've wanted to do some of this testing for quite a while anyway.
When do you want to do it and do you have a preference as to which NAT device? Would I be surfing to your site, or just surfing in general?

Blake
--
Vendor: Firewall Logging Software »www.SonicLogger.com - SonicWall and 3Com »www.LinkLogger.com - Linksys, Netgear and Zyxel

Daniel
Premium,MVM
join:2000-06-26
Pleasanton, CA
clubs:

Re: NAT Challenge

said by Link Logger See Profile :

said by Daniel See Profile :

Can we have you surf and such while we try? I've wanted to do some of this testing for quite a while anyway.
When do you want to do it and do you have a preference as to which NAT device? Would I be surfing to your site, or just surfing in general?
I'm not sure what they paramaters would be, but no, it wouldn't be to a site I own. The idea would be to try and ride back through entries in your NAT table. I'm not saying I could do this, or that it can be done, but I don't see it as impossible.

As for whether or not someone could get packets into a modern SOHO router that doesn't have anything in the NAT table -- that I'd rate as highly unlikely.

But yeah, I think we should explore this for real this time. Many of us here have wanted to for a while now; we should just go ahead and do it. Let's set up a time to meet in #ATU or something.
--
dmiessler.com -- grep understanding knowledge
B
Premium,MVM
join:2000-10-28

Re: NAT Challenge


A variation to a site you own would probably be good too -- the attack could involve an HTML e-mail message with links back to an image at your site -- the image retrieval would alert you to the target's presence (and presumably NAT table state).

Stretching the definition of "unsolicited" I realize, but...

-- B
--
In a realm outside causality and function

Link Logger
Premium,MVM
join:2001-03-29
Calgary, AB
·Shaw

That sounds fair. Try scanning the 'El Cheapo NAT Router' and see if you can determine what ports are being used and if that doesn't work I'll tell you what ports are being used so we don't waste too much time on detection and can focus on exploitation.

Blake
--
Vendor: Firewall Logging Software »www.SonicLogger.com - SonicWall and 3Com »www.LinkLogger.com - Linksys, Netgear and Zyxel
Forums » Up and Running » Security » SecurityFoxTrot Cartoon on spam... »
« Weird Download Popup  


Wednesday, 02-Dec 05:29:38 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 10 years online! © 1999-2009 dslreports.com.
page compression OFF
Most commented news this week
· [151] Comcast Releasing Promised Usage Meter
· [69] Baltimore To Ban Lazy Cable Installs
· [56] Broadband Killed The Game Console
· [55] Latest Consumer Reports Survey Not Kind To AT&T
· [52] Rogers Unveils The ISP Dream Model
· [42] ACTA: Global Three Strikes
· [41] Rural Carriers Quickly Embracing Fiber
· [35] Charter Exits Chapter 11
· [33] AT&T Top Lobbyist Cicconi Has His Feelings Hurt
· [26] Vivendi Agrees, Comcast/NBC Deal Soon
Most people now reading
· [Newsgroups] Newzleech down? [Filesharing Software]
· Windows 7 boot manager editing questions [Microsoft Help]
· Security Software Updates - 1 Dec 2009 [Security]
· [Newsgroups] Newzleech is either down or gone for good... [Filesharing Software]
· Opening a file download dialog from a JavaScript function. [Webmasters and Developers]
· Am I the only one that loves to work in IT? [No, I Will Not Fix Your #@$!! Computer]
· [Config] cisco asa 5505 with multiple outside IP addresses [Cisco]
· [CA] Very Slow Upload in San Diego (Poway) [Cox HSI]
· [WIN7] Outlook express under Windows 7? [Microsoft Help]
· [Snow Leopard] NFS Mounts - no more Directory Utility [All Things Macintosh]