oss-sec mailing list archives

Re: Attack on badly configured Netfilter-based firewalls


From: Eric Leblond <eric () regit org>
Date: Sat, 10 Mar 2012 00:01:21 +0100

Hello,

On Mon, 2012-02-27 at 14:46 +0100, Eric Leblond wrote:
Hello,

On Mon, 2012-02-27 at 05:25 +0400, Solar Designer wrote:
Eugene, all -

On Mon, Feb 27, 2012 at 09:19:59AM +0800, Eugene Teo wrote:
...

e it to Eric much earlier),
Eric would post to the list e.g. in January and ask for the issue to be
kept private until March - thereby violating the list's maximum embargo
period.

The slides and videos of my CansecWest talk are available:
http://home.regit.org/2012/03/playing-with-network-layers-to-bypass-firewalls-filtering-policy/

I've done a complete description of the attack and also demonstrate the
need to be careful with the use of helpers.

BR,
-- 
Eric Leblond 
Blog: http://home.regit.org/

Attachment: signature.asc
Description: This is a digitally signed message part


Current thread: