Another backdoor in my router.pdf

(622 KB) Pobierz
How Sercomm saved my Easter!
Another backdoor in my router:
when Christmas is NOT enough!
Released 18/04/2014
By Eloi Vanderbeken - Synacktiv
1318989306.014.png 1318989306.015.png 1318989306.016.png
I don't know about you, but I love Easter!
And with Sercomm, it's Easter every day!
2 / 18
1318989306.017.png 1318989306.001.png 1318989306.002.png 1318989306.003.png
Remember the TCP/32764 router
backdoor?
Introduced by Sercomm
Gives root shell, no authentication
Dump entire configuration
4 affected manufacturers (Cisco, Linksys,
NetGear, Diamond)
24 router models confirmed vulnerable
6000 vulnerable routers on the Internet
3 / 18
1318989306.004.png 1318989306.005.png 1318989306.006.png 1318989306.007.png
It was patched!
4 / 18
1318989306.008.png 1318989306.009.png 1318989306.010.png
No, it can't be a *feature*!
It was a simple mistake... wasn't it?
5 / 18
1318989306.011.png 1318989306.012.png 1318989306.013.png
Zgłoś jeśli naruszono regulamin