Forum Home | Search | I.M. | Profile | Directory | Active Topics | Calendar | Games

 
» Netwerkin! » Computer Related Forums » Network Management, Security, and more » AT&T, 2Wire Ignoring Active Security Exploit
 
Post New Topic  Post A Reply  
 
spacer
Richard
Trouble


Icon 1 posted    
Post A Reply Profile for Richard Edit/Delete Post Reply With Quote Send New Private Message Back to Top IP Logged

"2Wire manufactures DSL modems and routers for AT&T and other major carriers. Their devices suffer from a DNS redirection vulnerability that can be used as part of a variety of attacks, including phishing, identity theft, and denial of service. This exploit was publicly reported more than eight months ago and applies to nearly all 2Wire firmware revisions. The exploit itself is trivial to implement, requiring the attacker only to embed a specially crafted URL into a Web site or email. User interaction is not required, as the URL may be embedded as an image that loads automatically with the requested content. The 2Wire exploit bypasses any password set on the modem/router and is being actively exploited in the wild. AT&T has been deploying 2Wire DSL modems and router/gateways for years, so there exists a large vulnerable installed base. So far, AT&T/2Wire haven't done anything about this exploit."

http://tech.slashdot.org/tech/08/04/08/1946214.shtml

[icon950]
Member # 100
Posts: 5580
--------------------
Have YOU seen the truth?
"Between birth and death lies desire, Desire for life, for love, for everything good. - And this is the source of all suffering."
 
 - Printer-friendly view of this topic  
Post New Topic  Post A Reply Close Topic   Feature Topic   Move Topic   Delete Topic next oldest topic   next newest topic
Hop To:

Contact Us | Netwerkin.com

Join the Netwerkin Family!

Powered by Infopop Corporation
UBB.classic™ 6.6.2