- Vuln: Netpbm 'pamperspective' Utility Buffer Overflow Vulnerability
- Vuln: Graphviz Graph Parser Remote Stack Buffer Overflow Vulnerability
- Vuln: Perl IO::Socket::SSL 'verify_hostname_of_cert()' Security Bypass Vulnerability
- Vuln: FFmpeg TCP/UDP Memory Leak Denial Of ServiceVulnerability
- Vuln: xine-lib 1.1.15 and Prior Multiple Remote Vulnerabilities
- Vuln: xine-lib OGG Processing Remote Denial of Service Vulnerability
- Vuln: nginx HTTP Request Remote Buffer Overflow Vulnerability
- Vuln: Linux Kernel KVM 'handle_dr()' Local Denial of Service Vulnerability
- Vuln: Python zlib Module Remote Buffer Overflow Vulnerability
- Vuln: Multiple Symantec Products Intel Common Base Agent Remote Command Execution Vulnerability
Now for Part 2 of Kenny's Hacking Netgear router demo, but before we get to the part where we show what we can do, we need to know one thing.
What is Busybox ? In short, it is 'The Swiss Army Knife of Embedded Linux'
BusyBox combines tiny versions of many common UNIX utilities into a single small executable. It provides replacements for most of the utilities you usually find in GNU fileutils, shellutils, etc. The utilities in BusyBox generally have fewer options than their full-featured GNU cousins; however, the options that are included provide the expected functionality and behave very much like their GNU counterparts. BusyBox provides a fairly complete environment for any small or embedded system.
Kenny from GSO created this demo of gaining access to a Netgear Router... This is solely for educational purposes and usage.
By enabling the Debug option on Netgear routers, CLI access is available on the outside interface. The first part of this article will show how to remotely enable the debug feature. The second part will show what can be done once debug is enabled.
Site Search
Login Form
Disqus Tools
Twitter Updates
Could not save data to cache. Please make sure your cache directory exists and is writable.
Could not save data to cache. Please make sure your cache directory exists and is writable.
- feed:
- follow:
- bio:Information Security and Hacking at its best.
- web:
- location:NYC
- updates:537
- followers:674
- following:57
Last 4 tweets in past 30 days from gsogsecur:
People talking about '@gsogsecur OR "governmentsecurity.org"':