Modem-router #Zyxel VMG8924-B10D (#OVH) + scp/sftp + ethernet + IPv4 = corrupted IP packets.
I spent almost one day searching why my scp/sftp copy hangs, and the culprit is the router. When I plug a machine on an ethernet port, then the IP headers of the scp/sftp transfer get corrupted (even if the 2 machines involved are in wi-fi).
Work-around: in ssh config, force IPv6 for the target machine.
SecurityAffairs: Multiple DDoS botnets were observed targeting Zyxel devices https://securityaffairs.com/148724/malware/ddos-botnets-targets-zyxel-devices.html #informationsecuritynews #ITInformationSecurity #PierluigiPaganini #SecurityAffairs #CVE-2023-28771 #BreakingNews #SecurityNews #hackingnews #Security #Malware #Hacking #ZYXEL
#informationsecuritynews #itinformationsecurity #pierluigipaganini #securityaffairs #cve #breakingnews #securitynews #hackingnews #security #malware #hacking #zyxel
#Zyxel users still getting hacked by #DDoS #botnet emerge as public nuisance No. 1 https://arstechnica.com/?p=1955893
Ars Technica: Zyxel users still getting hacked by DDoS botnet emerge as public nuisance No. 1 https://arstechnica.com/?p=1955893 #Tech #arstechnica #IT #Technology #vulnerability #Security #exploit #Biz&IT #botnet #zyxel
#Tech #arstechnica #it #technology #vulnerability #security #exploit #biz #Botnet #zyxel
HackRead: Dark.IoT & Custom Botnets Exploit Zyxel Flaw in DDoS Attacks https://www.hackread.com/dark-iot-botnets-exploit-zyxel-flaw-ddos-attacks/ #Vulnerability #CyberAttacks #CyberAttack #Security #Fortinet #security #Malware #Botnet #Zyxel #DDOS
#vulnerability #cyberattacks #cyberattack #security #fortinet #malware #botnet #zyxel #ddos
Sicherheitsupdates: Angreifer können #Zyxel #NAS ins Visier nehmen | Security https://www.heise.de/news/Sicherheitsupdates-Angreifer-koennen-Zyxel-NAS-ins-Visier-nehmen-9193271.html #Patchday
Rushing to patch now
Before attackers break through
Assume compromise
#patching #zyxel #cybersecurity #haiku #poetry
Ars Technica: Researchers tell owners to “assume compromise” of unpatched Zyxel firewalls https://arstechnica.com/?p=1943400 #Tech #arstechnica #IT #Technology #vulnerabilities #firewalls #Security #exploits #Biz&IT #zyxel
#Tech #arstechnica #it #technology #vulnerabilities #firewalls #security #exploits #biz #zyxel
You can write TI briefs about the #Zyxel Mirai thing now 🤣 https://infosec.exchange/@shadowserver/110442626213838177
This is the media now so orgs can respond 🤣 it’s part of why Mirai got flooded. #zyxel
This #Zyxel vuln is being mass exploited now by Mirai botnet, target = whole internet. #CVE202328771
Payload https://www.virustotal.com/gui/file/f962134b1486261f1a28831c6605e0e404c39e6e29f88e4b24ce6ed3a559795c
📬 Botnetze übernehmen Millionen von Routern – auch Deinen!
#Cyberangriff #Hacking #AsusRouter #Belkin #Botnetze #DLinkRouter #Fodcha #Gafgyt #IoT #mirai #Mozi #Netgear #RealtekJungleSDK #RedGoBot #Sicherheitsupdates #Unit42 #Zyxel https://tarnkappe.info/artikel/cyberangriff/botnetze-uebernehmen-millionen-von-routern-auch-deinen-264186.html
#zyxel #unit42 #sicherheitsupdates #redgobot #realtekjunglesdk #netgear #mozi #mirai #iot #gafgyt #Fodcha #dlinkrouter #botnetze #belkin #asusrouter #hacking #cyberangriff
Expert found #Backdoor credentials in #ZyXEL LTE3301 M209
https://securityaffairs.co/wordpress/139974/hacking/backdoor-credentials-zyxel-lte3301-m209.html
#securityaffairs #hacking
#backdoor #zyxel #securityaffairs #hacking
Since 2022 is almost over, I think it’s time to boost some of the most successful articles published on the @hnsec blog this past year.
Let’s begin with our #zyxel #audit series at https://security.humanativaspa.it/tag/zyxel/
Zyxel #firmware extraction and #password analysis
https://security.humanativaspa.it/zyxel-firmware-extraction-and-password-analysis/
Multiple #vulnerabilities in Zyxel zysh
https://security.humanativaspa.it/multiple-vulnerabilities-in-zyxel-zysh/
Zyxel authentication bypass #patch analysis (CVE-2022-0342)
https://security.humanativaspa.it/zyxel-authentication-bypass-patch-analysis-cve-2022-0342/
Useless path #traversals in Zyxel admin interface (CVE-2022-2030)
https://security.humanativaspa.it/useless-path-traversals-in-zyxel-admin-interface-cve-2022-2030/
New (and old) #shellcode samples
https://security.humanativaspa.it/new-and-old-shellcode-samples/
Enjoy!
#zyxel #audit #firmware #password #vulnerabilities #patch #traversals #shellcode
Anyone using #CellMapper with #Zyxel devices to fine tune directional antennas? I can’t figure out why the #CellD reported by my devices are completely different to the CellID’s reported in CellMapper?
RT @0xor0ne@twitter.com
Gaining root shell on Zyxel IP cameras (models IPC-3605N and IPC-4605N) by Eric Urban
Blog post: http://www.hydrogen18.com/blog/hacking-zyxel-ip-cameras-pt-1.html
PoC repo: https://github.com/hydrogen18/zyxel_ipc_camera_pwn
#zyxel #vulnerability #exploit #iot #embedded #hacking #infosec #cybersecurity
#zyxel #vulnerability #exploit #iot #embedded #hacking #infosec #cybersecurity
@strizhechenko
> изделию от латышей я не очень доверяю
Были прецеденты? Полагаю, Вы про #Mikrotik. Сам не пользовался, но по отзывам, которые видел — рабочие лошадки, не лучше и не хуже других. ЕМНИП.
> Надо что-то русское.
Поиски убежища в патриотизме я не одобряю, однако могу предложить обратить внимание на #Keenetic. У меня восемь лет трудится #ZyXEL Keenetic II; до сих пор неплох, а в своё время был вообще шедевр. (Хотел посоветовать такой же одному американцу, но там они не продаются.)