[sysadmin] Major Internet Vulnerability

Jose Colon Rodriguez jose.colon26 at upr.edu
Wed Aug 27 17:27:33 AST 2008


Revealed: The Internet's Biggest Security Hole

"BGP eavesdropping has long been a theoretical weakness, but no one is known
to have publicly demonstrated it until Anton "Tony" Kapela, data center and
network director at 5Nines Data <http://www.5ninesdata.com/>, and Alex
Pilosov, CEO of Pilosoft <http://www.pilosoft.com/>, showed their technique
at the recent DefCon hacker conference. The pair successfully intercepted
traffic bound for the conference network and redirected it to a system they
controlled in New York before routing it back to DefCon in Las Vegas.

The technique, devised by Pilosov, doesn't exploit a bug or flaw in BGP. It
simply exploits the natural way BGP works."

http://blog.wired.com/27bstroke6/2008/08/revealed-the-in.html

-- 
------
José E. Colón Rodríguez
Academic Computing Coordinator
University of Puerto Rico at Cayey
E: jose.colon26 at upr.edu
W: http://www.cayey.upr.edu
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.hpcf.upr.edu/pipermail/sysadmin/attachments/20080827/eeb30165/attachment.html 


More information about the sysadmin mailing list