<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	>
<channel>
	<title>Comments on: Holes in Embedded Devices: IP-based session management</title>
	<atom:link href="http://www.gnucitizen.org/blog/holes-in-embedded-devices-ip-based-session-management/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.gnucitizen.org/blog/holes-in-embedded-devices-ip-based-session-management/</link>
	<description>Information Security Think Tank</description>
	<pubDate>Wed, 19 Nov 2008 11:26:44 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.6.3</generator>
		<item>
		<title>By: Adrian Pastor</title>
		<link>http://www.gnucitizen.org/blog/holes-in-embedded-devices-ip-based-session-management/#comment-105775</link>
		<dc:creator>Adrian Pastor</dc:creator>
		<pubDate>Wed, 30 Jan 2008 10:28:52 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/holes-in-embedded-devices-ip-based-session-management#comment-105775</guid>
		<description>@Antrix - yes, you're right: the VPN-1 Edge vuln is old. That's why I said "Early versions of Checkpoint VPN-1 Edge". 

I just mentioned VPN-1 Edge vuln as a real example. This post is NOT an advisory of a new vulenrability, but rather an explanation of IP address-based session management vulnerabilities.

Thanks for your feedback everyone!</description>
		<content:encoded><![CDATA[<p>@Antrix - yes, you&#8217;re right: the VPN-1 Edge vuln is old. That&#8217;s why I said &#8220;Early versions of Checkpoint VPN-1 Edge&#8221;. </p>
<p>I just mentioned VPN-1 Edge vuln as a real example. This post is NOT an advisory of a new vulenrability, but rather an explanation of IP address-based session management vulnerabilities.</p>
<p>Thanks for your feedback everyone!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Antrix</title>
		<link>http://www.gnucitizen.org/blog/holes-in-embedded-devices-ip-based-session-management/#comment-105703</link>
		<dc:creator>Antrix</dc:creator>
		<pubDate>Wed, 30 Jan 2008 08:12:08 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/holes-in-embedded-devices-ip-based-session-management#comment-105703</guid>
		<description>Ohhhh, this is old .... They fixed it quite a while ago.</description>
		<content:encoded><![CDATA[<p>Ohhhh, this is old &#8230;. They fixed it quite a while ago.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Adrian Pastor</title>
		<link>http://www.gnucitizen.org/blog/holes-in-embedded-devices-ip-based-session-management/#comment-105433</link>
		<dc:creator>Adrian Pastor</dc:creator>
		<pubDate>Tue, 29 Jan 2008 20:56:22 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/holes-in-embedded-devices-ip-based-session-management#comment-105433</guid>
		<description>@C4 - you're right. This type of attack could be launched against a basic router as well. Any embedded device could be affected by this vulnerability. Of course, provided that its administrative web interface solely trusts the admin's source IP for authentication purposes.

I wrote this post with any type of embedded devices in mind. i.e.: cameras, printers, VoIP phones, firewalls, routers, switches, etc ...</description>
		<content:encoded><![CDATA[<p>@C4 - you&#8217;re right. This type of attack could be launched against a basic router as well. Any embedded device could be affected by this vulnerability. Of course, provided that its administrative web interface solely trusts the admin&#8217;s source IP for authentication purposes.</p>
<p>I wrote this post with any type of embedded devices in mind. i.e.: cameras, printers, VoIP phones, firewalls, routers, switches, etc &#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: C4</title>
		<link>http://www.gnucitizen.org/blog/holes-in-embedded-devices-ip-based-session-management/#comment-105240</link>
		<dc:creator>C4</dc:creator>
		<pubDate>Tue, 29 Jan 2008 14:57:34 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/holes-in-embedded-devices-ip-based-session-management#comment-105240</guid>
		<description>This could be used on any basic router as well, as long as the you can do it before the admin session TTL times out?</description>
		<content:encoded><![CDATA[<p>This could be used on any basic router as well, as long as the you can do it before the admin session TTL times out?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Adrian Pastor</title>
		<link>http://www.gnucitizen.org/blog/holes-in-embedded-devices-ip-based-session-management/#comment-105225</link>
		<dc:creator>Adrian Pastor</dc:creator>
		<pubDate>Tue, 29 Jan 2008 14:29:57 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/holes-in-embedded-devices-ip-based-session-management#comment-105225</guid>
		<description>OK, trusting source IP addresses for authentication purposes on embedded devices is pretty bad, but doing the same thing on credit card transaction environments is just insane!</description>
		<content:encoded><![CDATA[<p>OK, trusting source IP addresses for authentication purposes on embedded devices is pretty bad, but doing the same thing on credit card transaction environments is just insane!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: ntp</title>
		<link>http://www.gnucitizen.org/blog/holes-in-embedded-devices-ip-based-session-management/#comment-105121</link>
		<dc:creator>ntp</dc:creator>
		<pubDate>Tue, 29 Jan 2008 12:12:47 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/holes-in-embedded-devices-ip-based-session-management#comment-105121</guid>
		<description>http://ha.ckers.org/blog/20070122/ip-trust-relationships-xss-and-you/</description>
		<content:encoded><![CDATA[<p><a href="http://ha.ckers.org/blog/20070122/ip-trust-relationships-xss-and-you/" rel="nofollow">http://ha.ckers.org/blog/20070.....s-and-you/</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Holes in Embedded Devices: Binary state session management &#124; GNUCITIZEN</title>
		<link>http://www.gnucitizen.org/blog/holes-in-embedded-devices-ip-based-session-management/#comment-105071</link>
		<dc:creator>Holes in Embedded Devices: Binary state session management &#124; GNUCITIZEN</dc:creator>
		<pubDate>Tue, 29 Jan 2008 09:52:26 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/holes-in-embedded-devices-ip-based-session-management#comment-105071</guid>
		<description>[...] is similar to IP address-based session management holes which has been discussed in my previous post. It is similar in the sense that the web browser of the admin user who is currently logged into the [...]</description>
		<content:encoded><![CDATA[<p>[...] is similar to IP address-based session management holes which has been discussed in my previous post. It is similar in the sense that the web browser of the admin user who is currently logged into the [...]</p>
]]></content:encoded>
	</item>
</channel>
</rss>
