RE: [Full-Disclosure] Core Internet Vulnerable - News at 11:00

From: SturmM (SturmM_at_honi.com)
Date: 04/20/04

  • Next message: Michal Zalewski: "Re: [Full-Disclosure] Core Internet Vulnerable - News at 11:00"
    To: full-disclosure@lists.netsys.com
    Date: Tue, 20 Apr 2004 14:37:53 -0500
    
    

    NISCC has issued an advisory:

    http://www.uniras.gov.uk/vuls/2004/236929/index.htm

    SANS has some good info too:

    http://isc.sans.org/diary.php?date=2004-04-20

    Mark

    -----Original Message-----
    From: full-disclosure-admin@lists.netsys.com
    [mailto:full-disclosure-admin@lists.netsys.com]On Behalf Of Crist J.
    Clark
    Sent: Tuesday, April 20, 2004 12:28 PM
    To: full-disclosure@lists.netsys.com
    Subject: [Full-Disclosure] Core Internet Vulnerable - News at 11:00

    Does anyone know WTF they are trying to say in this AP article,
    "Core Internet Technology Is Vulnerable,"

     
    http://story.news.yahoo.com/news?tmpl=story&cid=562&ncid=738&e=1&u=/ap/20040
    420/ap_on_hi_te/internet_threat

    It sounds like they are talking about a sequence number guessing
    attack on TCP BGP sessions? Sequence number prediction isn't really
    a new attack, but the story says,

      "Experts previously maintained such attacks could take between
       four years and 142 years to succeed because they require guessing
       a rotating number from roughly 4 billion possible combinations.
       Watson said he can guess the proper number with as few as four
       attempts, which can be accomplished within seconds."

    Hmmm... Four attempts... And the story makes it sound like a
    cross-platform attack, not a bug in a particular OS's ISN generation.
    FUD or is there something here?

    -- 
    Crist J. Clark                     |     cjclark@alum.mit.edu
                                       |     cjclark@jhu.edu
    http://people.freebsd.org/~cjc/    |     cjc@freebsd.org
    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.netsys.com/full-disclosure-charter.html
    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.netsys.com/full-disclosure-charter.html
    

  • Next message: Michal Zalewski: "Re: [Full-Disclosure] Core Internet Vulnerable - News at 11:00"

    Relevant Pages

    • RE: [Full-Disclosure] Core Internet Vulnerable - News at 11:00
      ... Subject: [Full-Disclosure] Core Internet Vulnerable - News at 11:00 ... "Core Internet Technology Is Vulnerable," ... attack on TCP BGP sessions? ... Charter: http://lists.netsys.com/full-disclosure-charter.html ...
      (Full-Disclosure)
    • Re: I love IP Tables.... (really sshd attacks)
      ... dictionary attack. ... Guessing an RSA 1k passowrd by trying each should ... at least belt and suspenders, key and password, access. ... And as I say, even guessing "abcdefg" ...
      (Fedora)
    • Re: [Full-Disclosure] CounterAttack
      ... Phil, I have to echo the other comments, because sometimes your return fire ... time in the forensics of an attack to understand if first it is _us_ letting ... gathering forensics data ... Charter: http://lists.netsys.com/full-disclosure-charter.html ...
      (Full-Disclosure)
    • Re: Hacked Passwords
      ... But Windows authentication is quite venerable by now, and it's hard for me to imagine a new kind of attack against them. ... The main attack against Windows authentication isn't an exploit of any flaw in the cryptographic algorithm, but simple brute force guessing, comparison and retrying. ... take a significant amount of time to brute force crack [as long as they are not split into smaller 7-character LM Hash segments], and I believe it's prohibitively difficult for pre-compiled hash tables to scale up that high. ...
      (microsoft.public.security)
    • Re: FTP sessions with spoofed IP-address
      ... it was someone trying to get into a user account by merely ... >>guessing passwords. ... Kevin Mitnick is famous for successfully performing just such an attack. ... >>If I were guessing, I would say it was someone trying to brute force the ...
      (alt.computer.security)