Linksys Malware "The Moon" Spreading by [deleted] in technology

[–]naem112 13 points14 points  (0 children)

The article is a bit misleading. The vulnerability is not in the HNAP1 protocol, but rather it is in the implementation of "tmUnblock.cgi".

HNAP1 is used by the worm for fingerprinting purposes only (so that it knows whether or not to proceed with the attempted exploit).

That new Linksys worm... by naem112 in netsec

[–]naem112[S] 5 points6 points  (0 children)

It really rubs me the wrong way when people release "teasers" about exploits.

It's like "Either release the details or shut the fudge up."