{"id":10477,"date":"2017-11-14T09:46:13","date_gmt":"2017-11-14T17:46:13","guid":{"rendered":"http:\/\/www.palada.net\/index.php\/2017\/11\/14\/news-4250\/"},"modified":"2017-11-14T09:46:13","modified_gmt":"2017-11-14T17:46:13","slug":"news-4250","status":"publish","type":"post","link":"http:\/\/www.palada.net\/index.php\/2017\/11\/14\/news-4250\/","title":{"rendered":"Motherboard Hacking Livestream: How to Pwn a Router"},"content":{"rendered":"<p><img decoding=\"async\" src=\"https:\/\/video-images.vice.com\/articles\/5a0b2035128957795c7b0a48\/lede\/1510680736459-DSC02274.jpeg\"\/><\/p>\n<p><strong>Credit to Author: Jason Koebler| Date: Tue, 14 Nov 2017 17:32:28 +0000<\/strong><\/p>\n<p> <span>Today we\u2019re going to learn how security researchers work. Jacob Holcomb is a principal researcher at Baltimore\u2019s <a href=\"https:\/\/twitter.com\/ISEsecurity?lang=en\" target=\"_blank\"><span>Independent Security Evaluators<\/span><\/a><\/span><span> (ISE), where he\u2019s worked on <a href=\"http:\/\/securityevaluators.com\/knowledge\/case_studies\/routers\/soho_service_hacks.php\" target=\"_blank\"><span>SOHOpelessly Broken<\/span><\/a>, which discovered over 50 new 0-day vulnerabilities in network routers and served as the foundation for the first-ever router hacking contest at DEFCON in <a href=\"https:\/\/twitter.com\/IoTvillage\" target=\"_blank\"><span>IoT Village<\/span><\/a>.<span> <\/span><\/span><\/p>\n<p> <span>He\u2019s a penetration tester who has presented at BlackHat USA, BlackHat Europe, DEFCON, DerbyCon, BSidesDC, and many others. During this livestream, Holcomb will show us a now-patched vulnerability in the ASUS RT-N56U router. He\u2019s going to exploit a stack-based buffer overflow to get full remote access. An attacker with a root shell on a router could man-in-the-middle internet traffic to steal credentials or monitor that traffic to setup more attacks on other targets in that router&#8217;s network. <\/span><\/p>\n<p> <span>Holcomb and our security reporter Lorenzo Franceschi-Bicchierai will walk you through step-by-step to explain how these exploits were used to find a vulnerability in the router. We will show how to reverse engineer the router&#8217;s web server and the development of the exploit to gain full remote access on the router. To be clear, this exploit was responsibly disclosed to ASUS and has been patched. The vulnerability no longer exists. If you own the router, you should make sure you\u2019re using the latest firmware.<span> <\/span><\/span><\/p>\n<p> <span><i>This is part of <a href=\"https:\/\/motherboard.vice.com\/en_us\/topic\/how-hacking-works\" target=\"_blank\">How Hacking Works<\/a>, a series of stories that demystifies the art of security research in hopes of improving digital security across the board.<\/i><\/span><\/p>\n<p><a href=\"https:\/\/motherboard.vice.com\/en_us\/article\/43npeg\/motherboard-hacking-livestream-how-to-pwn-a-router\" target=\"bwo\" >https:\/\/motherboard.vice.com\/en_us\/rss<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p><img decoding=\"async\" src=\"https:\/\/video-images.vice.com\/articles\/5a0b2035128957795c7b0a48\/lede\/1510680736459-DSC02274.jpeg\"\/><\/p>\n<p><strong>Credit to Author: Jason Koebler| Date: Tue, 14 Nov 2017 17:32:28 +0000<\/strong><\/p>\n<p>Join us on YouTube or Facebook to learn how hacking works.<\/p>\n","protected":false},"author":4,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"colormag_page_container_layout":"default_layout","colormag_page_sidebar_layout":"default_layout","footnotes":""},"categories":[10643,13328,10378],"tags":[3919,16621,16622,16631],"class_list":["post-10477","post","type-post","status-publish","format-standard","hentry","category-independent","category-motherboard","category-security","tag-hacking","tag-hacking-week","tag-hacking-week-2017","tag-security-research"],"_links":{"self":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/10477","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/comments?post=10477"}],"version-history":[{"count":0,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/10477\/revisions"}],"wp:attachment":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/media?parent=10477"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/categories?post=10477"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/tags?post=10477"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}