Re: your mail

From: Craig A. Huegen (chuegenat_private)
Date: Mon Dec 21 1998 - 14:00:40 PST

  • Next message: Aviram Jenik: "AOL client uses IP tunneling"

    It should be pointed out here that ICMP redirects are not the only
    kinds of attacks which can be carried out against these devices.
    
    Our wonderful denial of service friends land, nestea, nestea2, et al,
    can wreak havoc on these devices as well.
    
    Your best bet as a user of these devices is to impose very restrictive
    filters, or insure that these systems are not vulnerable to all
    of the attacks against IP stacks that have been discovered.
    
    I made a joke in my talk at SANS '98 that when my toaster got attacked
    by nestea, it burnt my toast.  We're not too far off from that. =)
    
    /cah
    
    On Mon, Dec 21, 1998 at 01:02:46PM -0500, X-Force wrote:
    ==>ISS Security Advisory
    ==>December 10, 1998
    ==>
    ==>ICMP Redirects Against Embedded Controllers
    



    This archive was generated by hypermail 2b30 : Fri Apr 13 2001 - 14:25:25 PDT