Warning

 

Close

Confirm Action

Are you sure you wish to do this?

Confirm Cancel
BCM
User Panel

Posted: 5/7/2024 2:30:38 PM EDT
Link Posted: 5/7/2024 2:32:13 PM EDT
[#1]
Link Posted: 5/7/2024 2:33:40 PM EDT
[#2]
Asked and answered.

Link Posted: 5/7/2024 2:43:37 PM EDT
[#3]
Dupetastic
Link Posted: 5/7/2024 2:43:50 PM EDT
[#4]
Damn, that’s not good.  This has very far reaching implications for anyone or any company that thought VPNs were protecting them.
Link Posted: 5/7/2024 2:44:14 PM EDT
[#5]
Discussion ForumsJump to Quoted PostQuote History
Originally Posted By formerlyphat:
Damn, that’s not good.  This has very far reaching implications for anyone or any company that thought VPNs were protecting them.
View Quote


Meh.
Link Posted: 5/7/2024 2:44:54 PM EDT
[#6]
Thinking of re-creating this one in the lab.  Looks pretty slick.
Link Posted: 5/7/2024 3:43:51 PM EDT
[#7]
Discussion ForumsJump to Quoted PostQuote History
Originally Posted By formerlyphat:
Damn, that's not good.  This has very far reaching implications for anyone or any company that thought VPNs were protecting them.
View Quote
Not really.
If you were victim of this attack, and you made a VPN connection to your work VPN concentrator, your client would end up trying to initiate connections to RFC1918 IPs on your internal network and would never get a response, as they would never hit the tunnel and be dropped once they reach an Internet router. Similarly, any traffic sourcing from your VPN concentrator side, would never get responses from your end point.
Link Posted: 5/7/2024 5:16:09 PM EDT
[#8]
Discussion ForumsJump to Quoted PostQuote History
Originally Posted By dmnoid77:


Meh.
View Quote View All Quotes
View All Quotes
Discussion ForumsJump to Quoted PostQuote History
Originally Posted By dmnoid77:
Originally Posted By formerlyphat:
Damn, that’s not good.  This has very far reaching implications for anyone or any company that thought VPNs were protecting them.


Meh.



This.  It requires running a rouge DHCP server on the network.  Not seeing this as some major issue.
Top Top