Re: [Full-disclosure] Cisco IOS Shellcode Presentation

From: Michael Holstein (michael.holstein_at_csuohio.edu)
Date: 07/29/05

  • Next message: Eric Lauzon: "RE: [Full-disclosure] Cisco IOS Shellcode Presentation"
    Date: Fri, 29 Jul 2005 14:39:50 -0400
    To: full-disclosure@lists.grok.org.uk
    
    

    > Cisco is responsible for this entire mess. Had they engineered a secure
    > product around a CPU that was not general purpose, none of this would be
    > happening now.

    Okay .. so we write 'special purpose' shellcode then. Cisco could have
    designed the CPU as a ASIC, at the expense of being able to
    field-upgrade like they can with software -- or they could have used
    something like a FPGA to emulate an ASIC, at the expense of cost.

    Everything's a trade off.

    ~Mike.
    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.grok.org.uk/full-disclosure-charter.html
    Hosted and sponsored by Secunia - http://secunia.com/


  • Next message: Eric Lauzon: "RE: [Full-disclosure] Cisco IOS Shellcode Presentation"

    Relevant Pages

    • Re: [Full-disclosure] Cisco IOS Shellcode Presentation
      ... And Lynn pointed out that Cisco routers use general purpose ... CPUs -- therefore Cisco's own engineers chose purposefully to build a ... Cisco is responsible for this entire mess. ... product around a CPU that was not general purpose, ...
      (Full-Disclosure)
    • Re: [Full-disclosure] Cisco IOS Shellcode Presentation
      ... And Lynn pointed out that Cisco routers use general purpose ... > product around a CPU that was not general purpose, ... Jason, I both like and respect you, but you are wrong here. ...
      (Full-Disclosure)
    • Re: [Full-disclosure] Cisco IOS Shellcode Presentation
      ... Had they engineered a secure ... > product around a CPU that was not general purpose, ... So you're suggesting that Cisco should have adopted security by ...
      (Full-Disclosure)
    • Re: LAN access while VPN is up
      ... > There is no AV on the bigger boxes, because they don't have the CPU ... > ASIC box vs a general purpose computer with an OS and software running on ... low-cost product and gained such market share in the first place. ...
      (comp.security.firewalls)
    • Re: LAN access while VPN is up
      ... There is no AV on the bigger boxes, because they don't have the CPU ... And that's just single packet deep inspection, ... >> the advantages of an ASIC box vs a general purpose computer with an OS ... It's definately an oddball and took them a while to sort it out. ...
      (comp.security.firewalls)