Bugtraq mailing list archives

Re: your mail


From: chuegen () QUADRUNNER COM (Craig A. Huegen)
Date: Mon, 21 Dec 1998 14:00:40 -0800


It should be pointed out here that ICMP redirects are not the only
kinds of attacks which can be carried out against these devices.

Our wonderful denial of service friends land, nestea, nestea2, et al,
can wreak havoc on these devices as well.

Your best bet as a user of these devices is to impose very restrictive
filters, or insure that these systems are not vulnerable to all
of the attacks against IP stacks that have been discovered.

I made a joke in my talk at SANS '98 that when my toaster got attacked
by nestea, it burnt my toast.  We're not too far off from that. =)

/cah

On Mon, Dec 21, 1998 at 01:02:46PM -0500, X-Force wrote:
==>ISS Security Advisory
==>December 10, 1998
==>
==>ICMP Redirects Against Embedded Controllers



Current thread: