Lemmy.one
  • Communities
  • Create Post
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
Threen@aussie.zone to Technology@beehaw.org · 1 year ago

Hacking Millions of Modems (and Investigating Who Hacked My Modem)

samcurry.net

external-link
message-square
5
fedilink
  • cross-posted to:
  • itsme@lemm.ee
  • hacking@lemmy.ml
  • security@lemmy.ml
  • techsploits@reddthat.com
  • hackernews@lemmy.smeargle.fans
  • technology@lemmy.world
35
external-link

Hacking Millions of Modems (and Investigating Who Hacked My Modem)

samcurry.net

Threen@aussie.zone to Technology@beehaw.org · 1 year ago
message-square
5
fedilink
  • cross-posted to:
  • itsme@lemm.ee
  • hacking@lemmy.ml
  • security@lemmy.ml
  • techsploits@reddthat.com
  • hackernews@lemmy.smeargle.fans
  • technology@lemmy.world
Two years ago, something very strange happened to me while working from my home network. I was exploiting a blind XXE vulnerability that required an external HTTP server to smuggle out files, so I spun up an AWS box and ran a simple Python webserver to receive the traffic from the vulnerable server.
alert-triangle
You must log in or # to comment.
  • AstralPath@lemmy.ca
    link
    fedilink
    arrow-up
    14
    ·
    1 year ago

    This is actually nuts. I watched a video breakdown of this blog post and my jaw was on the floor. Super interesting stuff.

    • Threen@aussie.zoneOP
      link
      fedilink
      arrow-up
      4
      ·
      1 year ago

      Absolutely, it’s a great read. Could you link the video you watched?

      • AstralPath@lemmy.ca
        link
        fedilink
        arrow-up
        6
        ·
        1 year ago

        Here you go! https://youtu.be/TFolQUeWoog?si=6Ts5_aw9kyB-A-Ja

        • Threen@aussie.zoneOP
          link
          fedilink
          arrow-up
          4
          ·
          1 year ago

          Thank you so much, I’ll check it out!

  • dotslashme@infosec.pub
    cake
    link
    fedilink
    English
    arrow-up
    2
    ·
    1 year ago

    Really good writeup of a very interesting exploit.

Technology@beehaw.org

technology@beehaw.org

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !technology@beehaw.org

A nice place to discuss rumors, happenings, innovations, and challenges in the technology sphere. We also welcome discussions on the intersections of technology and society. If it’s technological news or discussion of technology, it probably belongs here.

Remember the overriding ethos on Beehaw: Be(e) Nice. Each user you encounter here is a person, and should be treated with kindness (even if they’re wrong, or use a Linux distro you don’t like). Personal attacks will not be tolerated.

Subcommunities on Beehaw:

  • Free and Open Source Software
  • Programming
  • Operating Systems

This community’s icon was made by Aaron Schneider, under the CC-BY-NC-SA 4.0 license.

Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 477 users / day
  • 1.15K users / week
  • 2.96K users / month
  • 7.62K users / 6 months
  • 1.44K local subscribers
  • 39K subscribers
  • 4.25K Posts
  • 88K Comments
  • Modlog
  • mods:
  • alyaza [they/she]@beehaw.org
  • TheRtRevKaiser@beehaw.org
  • gyrfalcon@beehaw.org
  • rs5th@beehaw.org
  • coldredlight@beehaw.org
  • Leigh@beehaw.org
  • TheRtRevKaiser@kbin.social
  • Chris Remington@beehaw.org
  • BE: 0.19.7
  • Modlog
  • Legal
  • Instances
  • Docs
  • Code
  • join-lemmy.org