1. Yes, it's a whole new look! Have questions or need help? Please post your question in the New Forum Questions thread Click the X to the right to dismiss this notice
    Dismiss Notice
  2. Seeing tons of unread posts after the upgrade? See this thread for help. Click the X to the right to dismiss this notice
    Dismiss Notice

DD-WRT users, your router might be vulnerable

Discussion in 'Community Broadband & Computers' started by Mr. Linux, Mar 24, 2009.

  1. Mr. Linux

    Mr. Linux Senior Member & Moderator Forum Staff

    Joined:
    Jul 26, 2001
    Messages:
    3,277
    Likes Received:
    69
    This was posted on Slashdot last night:

    "The people who bring you the DroneBL DNS Blacklist services, while investigating an ongoing DDoS incident, have discovered a botnet composed of exploited DSL modems and routers. OpenWRT/DD-WRT devices all appear to be vulnerable. What makes this worm impressive is the sophisticated nature of the bot, and the potential damage it can do not only to an unknowing end user, but to small businesses using non-commercial Internet connections, and to the unknowing public taking advantage of free Wi-Fi services. The botnet is believed to have infected 100,000 hosts."

    Here is a direct link to the posting: http://it.slashdot.org/article.pl?sid=09/03/23/2257252&from=rss

    Here is a direct link to the DroneBL webiste detailing the vulnerability: http://dronebl.org/blog/8
     
  2. boomertsfx

    boomertsfx Booyakasha!

    Joined:
    Feb 14, 2002
    Messages:
    2,260
    Likes Received:
    34
    interesting... wonder if Tomato is affected
     
  3. Mr. Linux

    Mr. Linux Senior Member & Moderator Forum Staff

    Joined:
    Jul 26, 2001
    Messages:
    3,277
    Likes Received:
    69
    I was curious about that as well, since I use Tomato myself. My guess is that it is, since the vulnerability description leans more heavily on the hardware than on the software itself. It does sound like if you have a strong password set on your router, you'll probably be fine.

    Regardless, I'm trying to track down more information.
     
  4. simonds2k4

    simonds2k4 New Member

    Joined:
    Jun 14, 2004
    Messages:
    56
    Likes Received:
    0
    from what I read, if you have ssh and telnet turned off to the wan, than you are ok. Which should always be turned off.
     

Share This Page