Tuesday, January 15, 2008

Most Home Routers Vulnerable to Flash UPNP Attack

Slashdot reports that Universal Plug and Play vulnerabilities are being researched by contributors to Gnu Citizen, a self-described cutting-edge think tank/ethical hacker outfit. They've produced a flash swf file that is capable of opening open ports into your network by merely visiting a URL.

They claim that cannot really go to a vendor to ask for a solution because it is not actually a bug that they are finding but rather a conglomeration of design problems.

For details, see the January 12th publication of GNUCITIZEN.