Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security FullDisclosure
[Top] [All Lists]

[Full-disclosure] Tele2 - Versatel and Vivendi - exploit PATCHED

Subject: [Full-disclosure] Tele2 - Versatel and Vivendi - exploit PATCHED
Date: Thu, 21 Dec 2006 12:27:59 +0100
This vulnerability has been patched successfully by the vendor as tests by 
various parties have demonstrated, more details here:

http://cytrap.eu/blog/?p=133

Happy Holidays
Urs E. Gattiker
CyTRAP Labs and www.CASEScontact.org


At 21:23 2006-10-04, you wrote:
------------------------------

Message: 2
Date: Wed, 04 Oct 2006 13:56:27 +0200
Subject: [Full-disclosure] Tele2 - Versatel and Vivendi - exploit
To: full-disclosure@lists.grok.org.uk
Message-ID: <7.0.1.0.0.20061004095637.05222f10@WebUrb.dk>
Content-Type: text/plain; charset="us-ascii"; format=flowed

Tele 2 has recently announced that it is selling its Benelux assets
to Versatel and yesterday it informed the media that it intends to do
the same with its French assets, selling those to Vivendi.

The company that touts itself as providing economical broadband and
telecommunication services does, however, have a slight problem
regarding information security.

A vulenrability is being taken advantage off by various groups of
people and, in turn, this could harm home users that receive their
broadband and fixed-line services from Tele2.

In fact, several security features can be de-activated allowing a
malicious user to take control of a user's PC, his broadband
connection as well as his phone line as described here with a screen shot:

http://cytrap.eu/blog/?p=57

This is another example where user's face risks regarding their
internet connection they might not even be aware of. Another one of
those is the recent Fon example also circulated on this list.

Urs E. Gattiker
CyTRAP Labs & CASEScontact.org

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

<Prev in Thread] Current Thread [Next in Thread>
  • [Full-disclosure] Tele2 - Versatel and Vivendi - exploit PATCHED, CyTRAP Labs - advisory <=