Tri Dang and Bien Pham from Qrious Secure were able to execute a two bug (authentication bypass and command injection) attack against the WAN interface of the TP-Link AX1800. To me, the take-away from this is to avoid consumer routers. All the routers were running the latest firmware. The contest involved hacking multiple types of devices, only the router exploits are shown below. One highlight is that Synology seems to have gotten the worst of it, the RT6600ax was hacked by Multiple consumer routers were hacked by many different groups. Many routers hacked at the PWN2OWN contest Articles that offer security advice are listed on the Other router security advice page. The flaws that are exploited are documented on the Bugs page. I am still waiting for a good news story about routers. Routers in the news, pretty much means routers getting exploited by bad guys to do bad things.
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |