Archives

Archive for November, 2005

Exploiting Remote Routers

Monday, November 14th, 2005

Ok, i know what you are thinking..why will i do that, right? Well the answer is very simple. Just out of curiosity! So to get things straight, here’s the whole story. I had to ‘work’ late and after a while a got pretty bored so i tried to find something interesting to do..So i decided to scan some local IPs just to see if somebody forget anyhting ‘open’ (: After 1 minute i got some very interesting results! Alot of DSL/WiFi Router owners had the web interface enabled and accesible from external IPs. So i thought if only people were stupid they will use the default authentication account! So with the help of nmap service probes and of course google, i managed to get authenticated! I could reset, shutdown or even change the password of the router! I could even make more damage, such as altering the configurations of each router! That would be ‘catastrophic’ for the owners, since they weren’t able to set a descent password! Here some screenshots i took!


This WatchGuard router didnt even have a password! It was easy to open and alter ANYTHING as you load google on your browser!

While this router of Micronet was smart enough to lock itself from outside requests! (Note that the password was set to the default one!!)

So i continued scanning IPs, i thought i might find something more interesting! There must be a more stupid person that left way more important stuff online! After a while..there it was.. An IP Camera! I did some research on the passwords and again..with no problem i logged in! It was like 3 am when i did this so the lights were shut! I’ll try tomorrow to see what this camera is for!

My search continued for another 10 minutes when i fell into this golddigger! I found an open Dreambox! With telnet, ftp and of its course web interface! It was a 150GB dreambox with some interesting channels!
I even recorded porn for 5 minutes and download it through ftp ! (:

Ok, you are probably right..There is no purpose of doing all these! But c’mon now..It was fun! I will try locating the owners of the ‘open’ routers and ofcourse the guy with the dreambox and let him know what is the problem. Don’t get me wrong, am really a good guy (: I could have done alot of damage on those routers! As for the Dreambox, from the channel selection it had, it must have been on a Coffee Shop or something! So imagine while playing a movie, the porn channel to pop up and start playing! I think you got point..

Anyway, i think i have some real work to do (:
P.S. I know you are still thinking about that porn clip and the answer is NO! i won’t upload it!