IOS exploit

Michael.Dillon at btradianz.com Michael.Dillon at btradianz.com
Mon Sep 19 15:13:22 UTC 2005


Reading through the original Russian posting here
http://www.securitylab.ru/news/240415.php&direction=re&template=General&cp1=
It seems that someone has built an IOS worm that
follows an EIGRP vector from router to router.

I would say that means that enterprise networks
are in more immediate danger than ISPs, however...
This could be the first of many.

The article does say that this is based on cross
platform exploits but it isn't clear whether they
mean "across different Cisco platforms" or whether
there is some way for PCs to infect routers.

The article has the tone of something written by
a 3rd party therefore some of the facts may be a bit
twisted. They do use this opportunity to point out
that security through obscurity ain't all it's 
cracked up to be.

Advice for reading Russian. When you get into difficulty,
run the Russian through a machine translator using the
PROMT engine like http://translation1.paralink.com
and then GO BACK AND RE-READ the original Russian.
Your brain will now be able to make a more accurate
translation on the second pass. 

--Michael Dillon





More information about the NANOG mailing list