exploiting printers, home routers & smb routers

From: chrisd@cissmb.pointclark.net
Date: 08/22/02


Date: Thu, 22 Aug 2002 11:09:06 -0400 (EDT)
From: <chrisd@cissmb.pointclark.net>
To: <vuln-dev@securityfocus.com>

I read the black hat presentation on exploiting printers:

http://www.blackhat.com/presentations/bh-usa-02/bh-us-02-phenoelit-network.pdf

, good stuff & a real eye opener!

I started thinking ..., I'm no hardware expert but couldn't this be
modified & applied to all the home & small business routers ??? (linksys,
smc, d-link, etc ...)

As we all know so many of them are:

- can be configured through a web interface
- their default config is not changed
- are accessible through inet (lack of config)
- keep their default accounts (lack of config)
- new firmware can be uploaded

My question, could something similar to exploiting printers be done to
routers or would the hardware be totally incompatible ?

ch,



Relevant Pages

  • Re: exploiting printers, home routers & smb routers
    ... > - are accessible through inet (lack of config) ... But Netgear RPXXX series routers ... and default SNMP communities. ... could something similar to exploiting printers be done to ...
    (Vuln-Dev)
  • will this config work with Suse 10.1?
    ... following config at a good price: ... I'm not a hardware expert and I have a few concerns: ... - Do I need SLI or will a A8V-E be enough? ... - Is the ATI card good or should I get a Nvidia card? ...
    (alt.os.linux.suse)