Malfomed URL can open ports in your network!

Our very own fight club!
Post Reply
User avatar
Lyecdevf
cyber Idi Amin
cyber Idi Amin
Posts: 1222
Joined: 16 Mar 2006, 17:00
18
Location: In between life and death.
Contact:

Malfomed URL can open ports in your network!

Post by Lyecdevf »

The folks at GNU Citizen have been researching UPNP Vulnerabilities in home routers, and have produced a flash swf file capable of opening open ports into your network simply by visiting an unfortunate URL. Looks like Firefox & Safari users are safe for now.

link below has the full article and links to actually test your own network security. check it out.

http://www.gnucitizen.org/blog/hacking-the-interwebs
We will either find a way, or make one.
- Hannibal

User avatar
jasonxxx102
Fame ! Where are the chicks?!
Fame ! Where are the chicks?!
Posts: 176
Joined: 04 Feb 2008, 17:00
16
Contact:

Post by jasonxxx102 »

Thats interesting... but of course it targets internet explorer basically every1(that isnt smart) uses it... is opera safe?

User avatar
n3rd
Staff Member
Staff Member
Posts: 1474
Joined: 15 Nov 2005, 17:00
18
Location: my own perfect world in ma head :)
Contact:

Post by n3rd »

pretty much, I wont know if it is supported by all the websites though.

Lyec question;

Iexplorer.exe is also based upon explorer.exe right,

so wouldnt that be like a bridge for hackers just to fuck you over?.
[img]http://img580.imageshack.us/img580/8009/userbar2k.png[/img]

User avatar
Lyecdevf
cyber Idi Amin
cyber Idi Amin
Posts: 1222
Joined: 16 Mar 2006, 17:00
18
Location: In between life and death.
Contact:

Post by Lyecdevf »

n3rd wrote: Lyec question;

Iexplorer.exe is also based upon explorer.exe right,

so wouldnt that be like a bridge for hackers just to fuck you over?.
Yeah, once they open ports on your router the next step can be your computer. Ha, that even rhymes.
We will either find a way, or make one.
- Hannibal

User avatar
DNR
Digital Mercenary
Digital Mercenary
Posts: 6114
Joined: 24 Feb 2006, 17:00
18
Location: Michigan USA
Contact:

RTFM

Post by DNR »

Read through the comments.
It uses flash 9 and earlier and can affect other browsers, any browser that can run flash.

Not all routers are affected. And the threat to PCs is minimal or blocked as many PCs have host-based security systems/firewalls. You could redirect users of the network to bad DNS such as a popular email login or bank login. Victims would not know if they are at the actual website or the redirected malicious site.

DNR
-
He gives wisdom to the wise and knowledge to the discerning. He reveals deep and hidden things; he knows what lies in Darkness, and Light dwells with him.

Post Reply