Vulnerability Development mailing list archives
Re: smk
From: Dan Kaminsky <dankamin () CISCO COM>
Date: Wed, 10 Jan 2001 13:53:56 -0800
I haven't heard any chat about this from Stray Mountain Kitty about a NAT exploit. http://www.cryptography.ws/smk/smk-vun.001.001.htm Has anyone have any ideas or heard about this? Viper Team viper () bea com
To simplify, the author of this article believes that if your home network is configured to route outgoing packets with a destination address of 127.0.0.1, every machine on every network behind any NAT that's been configured with an address of 127.0.0.1 will respond. Lets just say this guy doesn't understand routing all too well. --Dan "Sets His Linux Box To 204.71.200.68 And Takes Over Yahoo" Kaminsky