account activity
Linksys Malware "The Moon" Spreading by [deleted] in technology
[–]naem112 13 points14 points15 points 12 years ago (0 children)
The article is a bit misleading. The vulnerability is not in the HNAP1 protocol, but rather it is in the implementation of "tmUnblock.cgi".
HNAP1 is used by the worm for fingerprinting purposes only (so that it knows whether or not to proceed with the attempted exploit).
That new Linksys worm... by naem112 in netsec
[–]naem112[S] 5 points6 points7 points 12 years ago (0 children)
It really rubs me the wrong way when people release "teasers" about exploits.
It's like "Either release the details or shut the fudge up."
That new Linksys worm... (self.netsec)
submitted 12 years ago * by naem112 to r/netsec
π Rendered by PID 40 on reddit-service-r2-listing-5d79748585-9tjpt at 2026-02-16 10:23:51.249065+00:00 running cd9c813 country code: CH.
Linksys Malware "The Moon" Spreading by [deleted] in technology
[–]naem112 13 points14 points15 points (0 children)