Now Tec BlogNow Tec Blog

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    EPA Science Advisory Board Report on Corn Ethanol Ignored Best Available Science

    September 21, 2023

    Mergers and acquisitions are becoming more science than art as CEOs turn to AI for answers

    September 21, 2023

    Ukrainians aghast as Poland stops sending weapons to fight Russia | Russia-Ukraine war News

    September 21, 2023
    Facebook Twitter Instagram
    • Home
    • Business

      Mergers and acquisitions are becoming more science than art as CEOs turn to AI for answers

      September 21, 2023

      Google Cloud to provide developers access to data on 11 more blockchains, including Polygon, Tron, and Arbitrum

      September 21, 2023

      ‘Zooglers’ might be sending housing costs in this European hub higher than London and Paris

      September 21, 2023

      Top 100 Hospitals 2023: Fortune/PINC AI

      September 21, 2023

      RTO: Office occupancy up after Labor Day mandates kick in

      September 21, 2023
    • Gadgets

      Windows’ Copilot AI starts rolling out September 26

      September 21, 2023

      US brings back free at-home COVID-19 tests as cases continue to spike

      September 21, 2023

      Dead Space co-creator leaves Callisto Protocol studio after it flopped

      September 21, 2023

      Amazon turns Alexa into a more conversational chatbot for your home

      September 21, 2023

      Uber Eats will begin accepting food stamps for grocery deliveries in 2024

      September 21, 2023
    • Tech

      The Download: what’s next for supercomputers, and electrifying everything

      September 21, 2023

      The US Is Mobilizing an Army to Fight the Climate Crisis

      September 21, 2023

      Everything You Need to Know About Getting Your Genome Sequenced

      September 21, 2023

      How electricity could clean up transportation, steel, and even fertilizer

      September 21, 2023

      What’s next for the world’s fastest supercomputers

      September 21, 2023
    • World

      Ukrainians aghast as Poland stops sending weapons to fight Russia | Russia-Ukraine war News

      September 21, 2023

      Power crisis, bird flu trigger imminent chicken shortage in South Africa | Food News

      September 21, 2023

      Six Portuguese youth take 32 nations to European court over climate change | European Union

      September 21, 2023

      Why Canada lacks allies’ support on claim India killed Hardeep Singh Nijjar | News

      September 21, 2023

      Niger’s ousted Bazoum appeals to West Africa bloc court to free him | News

      September 21, 2023
    • AI

      Jura Bio Binds AI and SynBio to Develop Immune-Based Therapeutics

      September 21, 2023

      How the AI revolution is different: It threatens white-collar workers

      September 21, 2023

      How Big Tech AI models nailed forecast for Hurricane Lee

      September 21, 2023

      AI in healthcare ushers in new era of risk assessments

      September 21, 2023

      Six months ago experts called for a pause to AI experiments. Where are we now?

      September 21, 2023
    • Apple

      Why You Should Buy Your Next Apple Product From Incredible

      September 21, 2023

      Meet the New Goddess, Same as the Old Goddess

      September 21, 2023

      A Closer Look at the Latest Model

      September 21, 2023

      The best iPhone 15 Pro cases 2023

      September 20, 2023

      Apple AirPods Pro (2nd gen) wireless earbuds are 20% off

      September 19, 2023
    • ChatGPT

      ETH developer programs AI-generated memecoin AstroPepeX using ChatGPT

      September 21, 2023

      ChatGPT mania may be cooling, but a serious new industry is taking shape

      September 21, 2023

      5 ChatGPT Prompts To Make Tough Business Decisions

      September 21, 2023

      Dall-E 3: AI image generator unveils major new upgrades and ChatGPT integration

      September 21, 2023

      Can Generative AI Be The Secret Sauce For Alexa To Rival ChatGPT And Google?

      September 21, 2023
    • Cyber Security

      Cisco ups its cybersecurity and AI ambitions with $28B acquisition of Splunk

      September 21, 2023

      Cybersecurity Stocks on the Move (SWISF, WKEY, HUBC, VHC) -September 21, 2023 at 09:31 am EDT

      September 21, 2023

      Hackers Can Use Bluetooth Speakers To Steal Your Car

      September 21, 2023

      Kalmar receives cyber security certification 

      September 21, 2023

      Indonesia’s digital transformation at World Cloud Show & Cyber Security Summit

      September 21, 2023
    • Computing

      The High-performance Computing (HPC) Market Size to grow at a rate of 6.7% by 2027

      September 21, 2023

      Quantum Computing Inc. Selects Tempe, Arizona as the Site for its Quantum Photonic Chip Foundry

      September 21, 2023

      Signal Announces Quantum Computing Resistant Encryption Protocol

      September 21, 2023

      Jiritsu Secures $10.2 Million to Champion Verifiable Computing

      September 21, 2023

      Huawei Launches Solutions that Facilitate Digital Infrastructure for an Intelligent World

      September 21, 2023
    • Science

      EPA Science Advisory Board Report on Corn Ethanol Ignored Best Available Science

      September 21, 2023

      The science behind deep brain stimulation for depression

      September 21, 2023

      NC State Hosts Groundbreaking for Integrative Sciences Building

      September 21, 2023

      Are Wild Animals Really Just Like Us? | Science

      September 21, 2023

      China, Japan and South Korea occupy top spots in global index of scientific innovation

      September 21, 2023
    Facebook Twitter Instagram
    Now Tec BlogNow Tec Blog
    • Home
    • Business

      Mergers and acquisitions are becoming more science than art as CEOs turn to AI for answers

      September 21, 2023

      Google Cloud to provide developers access to data on 11 more blockchains, including Polygon, Tron, and Arbitrum

      September 21, 2023

      ‘Zooglers’ might be sending housing costs in this European hub higher than London and Paris

      September 21, 2023

      Top 100 Hospitals 2023: Fortune/PINC AI

      September 21, 2023

      RTO: Office occupancy up after Labor Day mandates kick in

      September 21, 2023
    • Gadgets

      Windows’ Copilot AI starts rolling out September 26

      September 21, 2023

      US brings back free at-home COVID-19 tests as cases continue to spike

      September 21, 2023

      Dead Space co-creator leaves Callisto Protocol studio after it flopped

      September 21, 2023

      Amazon turns Alexa into a more conversational chatbot for your home

      September 21, 2023

      Uber Eats will begin accepting food stamps for grocery deliveries in 2024

      September 21, 2023
    • Tech

      The Download: what’s next for supercomputers, and electrifying everything

      September 21, 2023

      The US Is Mobilizing an Army to Fight the Climate Crisis

      September 21, 2023

      Everything You Need to Know About Getting Your Genome Sequenced

      September 21, 2023

      How electricity could clean up transportation, steel, and even fertilizer

      September 21, 2023

      What’s next for the world’s fastest supercomputers

      September 21, 2023
    • World

      Ukrainians aghast as Poland stops sending weapons to fight Russia | Russia-Ukraine war News

      September 21, 2023

      Power crisis, bird flu trigger imminent chicken shortage in South Africa | Food News

      September 21, 2023

      Six Portuguese youth take 32 nations to European court over climate change | European Union

      September 21, 2023

      Why Canada lacks allies’ support on claim India killed Hardeep Singh Nijjar | News

      September 21, 2023

      Niger’s ousted Bazoum appeals to West Africa bloc court to free him | News

      September 21, 2023
    • AI

      Jura Bio Binds AI and SynBio to Develop Immune-Based Therapeutics

      September 21, 2023

      How the AI revolution is different: It threatens white-collar workers

      September 21, 2023

      How Big Tech AI models nailed forecast for Hurricane Lee

      September 21, 2023

      AI in healthcare ushers in new era of risk assessments

      September 21, 2023

      Six months ago experts called for a pause to AI experiments. Where are we now?

      September 21, 2023
    • Apple

      Why You Should Buy Your Next Apple Product From Incredible

      September 21, 2023

      Meet the New Goddess, Same as the Old Goddess

      September 21, 2023

      A Closer Look at the Latest Model

      September 21, 2023

      The best iPhone 15 Pro cases 2023

      September 20, 2023

      Apple AirPods Pro (2nd gen) wireless earbuds are 20% off

      September 19, 2023
    • ChatGPT

      ETH developer programs AI-generated memecoin AstroPepeX using ChatGPT

      September 21, 2023

      ChatGPT mania may be cooling, but a serious new industry is taking shape

      September 21, 2023

      5 ChatGPT Prompts To Make Tough Business Decisions

      September 21, 2023

      Dall-E 3: AI image generator unveils major new upgrades and ChatGPT integration

      September 21, 2023

      Can Generative AI Be The Secret Sauce For Alexa To Rival ChatGPT And Google?

      September 21, 2023
    • Cyber Security

      Cisco ups its cybersecurity and AI ambitions with $28B acquisition of Splunk

      September 21, 2023

      Cybersecurity Stocks on the Move (SWISF, WKEY, HUBC, VHC) -September 21, 2023 at 09:31 am EDT

      September 21, 2023

      Hackers Can Use Bluetooth Speakers To Steal Your Car

      September 21, 2023

      Kalmar receives cyber security certification 

      September 21, 2023

      Indonesia’s digital transformation at World Cloud Show & Cyber Security Summit

      September 21, 2023
    • Computing

      The High-performance Computing (HPC) Market Size to grow at a rate of 6.7% by 2027

      September 21, 2023

      Quantum Computing Inc. Selects Tempe, Arizona as the Site for its Quantum Photonic Chip Foundry

      September 21, 2023

      Signal Announces Quantum Computing Resistant Encryption Protocol

      September 21, 2023

      Jiritsu Secures $10.2 Million to Champion Verifiable Computing

      September 21, 2023

      Huawei Launches Solutions that Facilitate Digital Infrastructure for an Intelligent World

      September 21, 2023
    • Science

      EPA Science Advisory Board Report on Corn Ethanol Ignored Best Available Science

      September 21, 2023

      The science behind deep brain stimulation for depression

      September 21, 2023

      NC State Hosts Groundbreaking for Integrative Sciences Building

      September 21, 2023

      Are Wild Animals Really Just Like Us? | Science

      September 21, 2023

      China, Japan and South Korea occupy top spots in global index of scientific innovation

      September 21, 2023
    Now Tec BlogNow Tec Blog
    Home»Computing»Exploited: Netgear Nighthawk RAX30 – Embedded Computing Design
    Computing

    Exploited: Netgear Nighthawk RAX30 – Embedded Computing Design

    eduardo_alves38By eduardo_alves38September 18, 2023Updated:September 18, 2023No Comments3 Mins Read
    Facebook Twitter Pinterest LinkedIn Tumblr Email
    Exploited: Netgear Nighthawk RAX30 – Embedded Computing Design
    Share
    Facebook Twitter LinkedIn Pinterest Email


    By Chad Cox

    Production Editor

    Embedded Computing Design

    September 18, 2023

    Blog

    Image Credit: Amanda Janes

    By now, we all know that no matter the precautions, there will always be a way in, a way you haven’t thought of, a way to breach and control your connected … everything. To highlight these every changing vulnerabilities, whether minor or major, and promote overall secure IoT environments, the Zero Day Initiative (ZDI) organized a Pwn2Own competition in Toronto, to dive deeper into the machines we employ everyday and show how vulnerable we are when everything is connected. ZDI informed the participating teams that they will need to take their shared knowledge and apply it to printers, network-attached storage (NAS) devices, routers, and smart speakers.

    Claroty’s Team 82 participated with the goal of compromising the Netgear Nighthawk RAX30 router. What they found was that when exploited, an attacker may possibly surveil your procedures, highjack connections, send you to malicious sites, or embed malware into your ecosystem.  With all the collected wisdom, it wasn’t long until the team discovered a vulnerability that was easy to find, but a challenge to exploit.

    Image Credit: Claroty’s Team 82

     

    The vulnerability was found in the soap-served process running on port 5000, a protocol that manages SOAP messages in relation to the operation in the attached LAN. According to Team 82, “the vulnerability we found was a stack-based buffer overflow. This class of vulnerabilities is usually trivial to exploit when there are no stack protections.”

    The routers utilize stack canaries that support and secure buffer overflow attacks. The canary is a small value that is placed on the stack to monitor for irregularities before a function returns. If an anamoly is found, the program should self-terminate to save any further network destruction.

    • Find another vulnerability that could leak the canary from memory
    • Brute-force the canary (this is possible only in specific cases)
    • “Logically” bypass the canary: do something with the overflow before the canary is checked

    The team chose to logically bypass the canary. The dedicated server, “soap_serverd,”, runs on ports 5000 (HTTP) and 5043 (HTTPS) and operates as a programmatic SOAP-based API for router functionality. If the API is infiltrated, the nefarious actor may be able to manipulate the system’s integrity.

    The server’s main use is for NETGEAR Nighthawk App for iOS and Android. Team 82 exposed more than 180 vulnerabilities in the server, sorted in various categories including:

    • UserOptionsTC
    • AdvancedQOS
    • WANEthernetLinkConfig
    • WANIPConnection
    • DeviceInfo
    • LANConfigSecurity
    • WLANConfiguration
    • DeviceConfig
    • ParentalControl

    The following CVEs are best when utilized jointly, and proper use will enable pre-authentication remote code execution.

    • CVE-2023-27357 NETGEAR RAX30 GetInfo Missing Authentication Information Disclosure Vulnerability
    • CVE-2023-27368: NETGEAR RAX30 soap_serverd Stack-based Buffer Overflow Authentication Bypass Vulnerability
    • CVE-2023-27369: NETGEAR RAX30 soap_serverd Stack-based Buffer Overflow Authentication Bypass Vulnerability
    • CVE-2023-27370: Using soap_serverd auth Bypass to Reset the Admin Password  
    • CVE-2023-27367: Authentication Bypass to RCE Using Magic telnet and Command Injection

     

    Chad Cox. Production Editor, Embedded Computing Design, has responsibilities that include handling the news cycle, newsletters, social media, and advertising. Chad graduated from the University of Cincinnati with a B.A. in Cultural and Analytical Literature.

    More from Chad



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    eduardo_alves38
    • Website

    Related Posts

    The High-performance Computing (HPC) Market Size to grow at a rate of 6.7% by 2027

    September 21, 2023

    Quantum Computing Inc. Selects Tempe, Arizona as the Site for its Quantum Photonic Chip Foundry

    September 21, 2023

    Signal Announces Quantum Computing Resistant Encryption Protocol

    September 21, 2023
    Add A Comment

    Leave A Reply Cancel Reply

    Editors Picks

    ETH developer programs AI-generated memecoin AstroPepeX using ChatGPT

    September 21, 2023

    ChatGPT mania may be cooling, but a serious new industry is taking shape

    September 21, 2023

    5 ChatGPT Prompts To Make Tough Business Decisions

    September 21, 2023

    Dall-E 3: AI image generator unveils major new upgrades and ChatGPT integration

    September 21, 2023
    Top Reviews
    Advertisement
    Demo
    Now Tec Blog
    Facebook Twitter Instagram Pinterest Vimeo YouTube
    • Home
    • About us
    • DMCA
    • Privacy Policy
    © 2023 nowtecblog. Designed by nowtecblog.

    Type above and press Enter to search. Press Esc to cancel.