boards.ie

Go Back   boards.ie > Tech > Nets & Comms > Broadband

Closed Thread
 
Thread Tools Search this Thread Display Modes
Old 20-09-2007, 17:40   #1
Sponge Bob
Registered User
 
Sponge Bob's Avatar
 
Join Date: Feb 2005
Posts: 11,861
Eircom Netopia Routers Are Wide Open

If you follow a few simple steps that I will not go into. Basically the Router Name contains part of the Encryption Key.

http://www.bartbusschots.ie/blog/?p=511

Quote:
The information I was given included a very short piece of computer code (in C++) that takes an Eircom default SSID as input and effectively instantly gives the default WEP key as output. The algorythm to do this is shockingly and frighteningly trivial. The author claims he was able to generate this code using some very basic reverse-engineering techniques on the Eircom install CD
Eircom won't talk to him about it or publish a security advisory for the minimum 100k of these out there. There are about 50k of these things in the supply chain between now and christmas so it will be 2008 before they fix it .

All Together Now Duhhhh!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!

Thank phuck I always use WPA
__________________
"Mr Casey" June 29th 1998

"Dungarvan,'' he went on, "is in the unique position of being completely ringed with fibre optic cable
Sponge Bob is offline  
Advertisement

To remove these adverts, please create an account, or log in! You must have an account to post anyway :-)
Old 20-09-2007, 18:12   #2
dub45
Moderator
 
dub45's Avatar
 
Join Date: Jun 2003
Location: Dublin
Posts: 6,523
Surely it is an issue worthy being brough to the attention of Comreg or perhaps even the data commissioner?

I have always thought it silly anyway that they come with the wireless switched on as the default. It is causing unnecessary congestion of the airwaves never mind the security issue>
dub45 is offline  
Old 20-09-2007, 18:22   #3
dulpit
Registered User
 
dulpit's Avatar
 
Join Date: May 2006
Location: Far from home...
Posts: 2,240
Send a message via MSN to dulpit
Quick question - our router is an Eircom Netopia one, but we have it set up so that only certain MAC addresses (my laptop, my brother's wii) can access it wirelessly...

I presume this is as safe & secure as you can get??
__________________
dulpit is offline  
Old 20-09-2007, 18:24   #4
the_syco
Syco Kitteh
 
the_syco's Avatar
 
Join Date: Jun 2001
Location: Leixlip
Posts: 12,484
Quote:
Originally Posted by dub45
Surely it is an issue worthy being brough to the attention of Comreg or perhaps even the data commissioner?
Surely you're taking the piss? Because someone found a way to quickly crack WEP, it's bad? WPA is more secure, but not uncrackable. Should that also be removed?

Wait: news flash: if it gives access to a business, someone will try to crack it.

Quote:
Originally Posted by dulpit
Quick question - our router is an Eircom Netopia one, but we have it set up so that only certain MAC addresses (my laptop, my brother's wii) can access it wirelessly...

I presume this is as safe & secure as you can get??
Nope. Your MAC address is broadcasted as plain text. Then I just have to spoof your MAC address (make your router think I'm actually your computer), and in I go.
__________________
(Case) Cooler Master Cosmos 1000 .:. (Mobo) Gigabyte GA-X48-DS5 .:. (CPU) 12MB 64bit Intel Core 2 Quad Q9550 .:. (Heatsink) TRUE 120 .:. (RAM) 4GB Dominator PC2-8500 .:. (GFX) 1GB HD4870 [Factory Overclocked] .:. (SATA2 HDDs) 250GB 320GB 500GB 1TB 1.5TB .:. (Audio) Creative SB X-Fi Xtreme Gamer Fatal1ty Professional, 64MB .:. (Joystick) Saitek x52 .:. (Headphones) Sennheiser SK Gaming .:. (Mouse) Razer Deathadder.
I has panorama... http://pix.ie/the-syco/



Last edited by the_syco; 20-09-2007 at 18:27.
the_syco is offline  
Old 20-09-2007, 18:38   #5
Sponge Bob
Registered User
 
Sponge Bob's Avatar
 
Join Date: Feb 2005
Posts: 11,861
Well as someone living in the country I don't feel as strongly about that dub45 but deriving the SSID from the WEP key and then broadcasting it is stupido!
__________________
"Mr Casey" June 29th 1998

"Dungarvan,'' he went on, "is in the unique position of being completely ringed with fibre optic cable
Sponge Bob is offline  
Old 20-09-2007, 18:45   #6
dub45
Moderator
 
dub45's Avatar
 
Join Date: Jun 2003
Location: Dublin
Posts: 6,523
Quote:
Originally Posted by Sponge Bob
Well as someone living in the country I don't feel as strongly about that dub45 but deriving the SSID from the WEP key and then broadcasting it is stupido!
I agree with you on the latter but as regards the former it is truly amazing how many Eircom networks you can pick up in Dublin and I would guess that a fair few of them are not being used as part of a wireless network.
dub45 is offline  
Old 20-09-2007, 18:45   #7
dub45
Moderator
 
dub45's Avatar
 
Join Date: Jun 2003
Location: Dublin
Posts: 6,523
Quote:
Originally Posted by dulpit
Quick question - our router is an Eircom Netopia one, but we have it set up so that only certain MAC addresses (my laptop, my brother's wii) can access it wirelessly...

I presume this is as safe & secure as you can get??
You should change the security to WPA - easily done if you are capable of the mac stuff.
dub45 is offline  
Old 20-09-2007, 18:53   #8
Sponge Bob
Registered User
 
Sponge Bob's Avatar
 
Join Date: Feb 2005
Posts: 11,861
I agree with you Dub45 in that the advisory that eircom will eventually release will advise persons that

1. they are not to broadcast the SSID if wireless is on ( trivial)
2. they are to turn off the wireless altogether ( trivial) if wireless is not used on the premises .
__________________
"Mr Casey" June 29th 1998

"Dungarvan,'' he went on, "is in the unique position of being completely ringed with fibre optic cable
Sponge Bob is offline  
Old 20-09-2007, 21:59   #9
watty
Registered User
 
watty's Avatar
 
Join Date: Apr 2001
Location: Tanglebox
Posts: 19,488
make up your own SSID and key at the least, WPA at better, only use cables if paranoid.
watty is offline  
Old 21-09-2007, 09:04   #10
bungholio
Registered User
 
Join Date: May 2005
Posts: 104
Quote:
Originally Posted by the_syco
Surely you're taking the piss? Because someone found a way to quickly crack WEP, it's bad? WPA is more secure, but not uncrackable. Should that also be removed?
you're a fool, were not talking wep in gereral here, were talking eircoms ssid naming and their wep codes,

News Flash: wake up n stop been an azz

Last edited by bungholio; 21-09-2007 at 09:07.
bungholio is offline  
Old 21-09-2007, 09:48   #11
Sponge Bob
Registered User
 
Sponge Bob's Avatar
 
Join Date: Feb 2005
Posts: 11,861
Righty Ho!

Unless eircom publish a proper advisory in the national press by next friday morning, one weeks time, I will publish the detailed exploit here .....and elsewhere .....in order to make them publish a proper advisory.

There is no point in hiding this issue any more .

They have one week from now . As for the stuff in the pipeline they can tell the shops to print the advisory and sellotape it to the boxes .

There are well over 100k of these things out there, either deployed in use or in the pipeline

Even telling everyone to change the last 2 digits of the SSID, forthwith, would do the trick.
__________________
"Mr Casey" June 29th 1998

"Dungarvan,'' he went on, "is in the unique position of being completely ringed with fibre optic cable
Sponge Bob is offline  
Old 21-09-2007, 10:14   #12
Nick_oliveri
Registered User
 
Join Date: Oct 2002
Location: Jobseekers Allowance
Posts: 2,163
Sure there was a default WEP key for a lot of routers not so long ago. This doesn't surprise me tbh.

NTL router in the brothers apartment had wireless and no security turned on by default. I'd say a few people in Raheny were happy for those few months. They even managed to change the admin password.

Anyone ever heard of the Linux distro "Backtrack"?
__________________

"Look here mama you can either hit the streets or the sheets. Now you can either go or you can come. Can you dig it?"
Nick_oliveri is offline  
Old 21-09-2007, 10:33   #13
BOFH_139
Hosted Moderator
 
BOFH_139's Avatar
 
Join Date: Jan 2007
Posts: 3,321
If we can get this on the front page of Digg they "may" so something about it....

http://digg.com/security/Eircom_Expo...Security_Risks
BOFH_139 is offline  
Old 21-09-2007, 10:43   #14
kaimera
Registered User
 
kaimera's Avatar
 
Join Date: Sep 2001
Location: Sweden
Posts: 12,648
Arse.

I couldn't find a way to stop broadcasting the SSID on my own netopia router without disabling wireless completely. :-/

WPA + MAC addy wifi access only + changed SSID I have already.
__________________

Steam ID: [b.ie]kaimera
kaimera is offline  
Old 21-09-2007, 10:51   #15
bealtine
Registered User
 
bealtine's Avatar
 
Join Date: Jun 2003
Location: here
Posts: 1,278
Quote:
Originally Posted by Sponge Bob
Righty Ho!

Unless eircom publish a proper advisory in the national press by next friday morning, one weeks time, I will publish the detailed exploit here .....and elsewhere .....in order to make them publish a proper advisory.
I say publish now.
bealtine is offline  
Closed Thread
  boards.ie > Tech > Nets & Comms > Broadband Top

Bookmarks

Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off



All times are GMT. The time now is 01:47.


© boards.ie Ltd. (Ireland) - Hosted by Digiweb Hosting. Message Boards and Forums Directory