easternerd
Owning IOS at Black Hat 2005

After the Cisco Tussle about Michael Lynn at the ablackhat conference and the pages of the blackhat conference handbook torn out to evade the information from being leaked out, TomsNetworking has posted some slides of the cisco exploitaton proces, though they are just crude photographs, they still give enough information for any advanced hacker.
Some of the slides are here:

Being arrested or sued is not positive experience, but for speakers at Black Hat and Defcon, it is a badge of honor. On July 27, Michael Lynn, a computer security expert, demonstrated how to gain administrator access to many Cisco routers and switches. This demonstration occured during Lynn's scheduled talk on the vulnerabilities of Cisco IOS at the 2005 Black Hat Briefings in Las Vegas.

As a result of the talk, Lynn incurred the wrath of his former employer Internet Security Solutions (ISS) and Cisco Systems. In the space of a few hours, Lynn became unemployed and was also served with a lawsuit.

user posted image


user posted image
Misconceptions about IOS Slide

user posted image
The realites of Cisco IOS Slide

user posted image
At first glance, an overflow attack may be hard

user posted image
IOS doesn't crash if it thinks it's crashing already

user posted image
Check Heap slide

user posted image
Shellcode Check List Slide

user posted image
End of the World?


Read the full article @ Toms
boshcash
very intresting , although didnt have much info from the slides , but they should be useful to advanced h4x0r , and cisco router users should upgrade their firmware before a universal catastrophe occurs ..
da_cash
two words from me ...f**k cisco... see attached pdf

and here's another nice thing to see..

http://www.siliconvalleysleuth.com/files/s..._injunction.DOC


This is one of reasons why so many white / grey hats became black hats..
Yorn
Just so you guys know, this is a huge story that will be bigger and bigger as more people exploit this.
beardednose
However, we won't be able to chat about it here as all the routers will be down. mad.gif
myth
QUOTE
two words from me ...f**k cisco...


Careful buddy, their trying to protect the internet infrastructure, just like a mother would - at all costs - try and protect their child. A comment like that isnt appropriate at this time, if your basing your comment on Cisco and ISS's involvement with Lynn.

On a better note, thats for those links, very informative, for those that didnt look at them, scroll back up and read them...

But its not like Cisco have never had a vulnerability before in their IOS, but this is just starting to get interesting...
setthesun
QUOTE(myth @ Jul 30 2005, 08:51 AM)
QUOTE
two words from me ...f**k cisco...


Careful buddy, their trying to protect the internet infrastructure, just like a mother would - at all costs - try and protect their child. A comment like that isnt appropriate at this time, if your basing your comment on Cisco and ISS's involvement with Lynn.

*




I think they're just trying to protect their money and don't care about internet smile.gif
satknis
this is paper is very interresting, i'm asking myself howlong it will take until the first
exploit is released.

setthesun: if they want to protect their money they have to protect the internet,
because the most isp use cisco systems.
if they lose control over their sold routers and other hardware they will lose all/much
customers.
da_cash
myth: maybe im wrong but hiding the truth and masking own mistakes does not look like democracy to me, besides hiding the truth is not fair to their customers. Im glad that M.Lynn maked this article public at BH2k5 because sooner or later someone might found it and use for bad purbose (its still possible), such things like Cisco did should never happened. Finding bugs makes the software/hardware more stable and vulnproof . Sometimes it may also bring a great breakthrough.
As for Cisco it's available globally and like M$ its policy is to earn money and as everyone already noticed they doesn't care about us, they care only on their profit.


"just like a mother would - at all costs try and protect their child" yea but when the child is ill , the mother won't hide it in the closet.
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.

 
Invision Power Board © 2001-2005 Invision Power Services, Inc.