View Single Post
Old 03-25-2011, 04:38 PM  
signupdamnit
Confirmed User
 
signupdamnit's Avatar
 
Industry Role:
Join Date: Aug 2007
Posts: 6,697
Quote:
Originally Posted by TheDoc View Post

Team GFY surly ins't the only people monitoring this.
You can never be too sure. It's weird sometimes how things can be discovered that you would think would never be an issue or would have been discovered long ago.

http://www.wired.com/threatlevel/200...-warner-cable/

Quote:
Chen, founder of a software startup called Pip.io, said he was trying to help a friend change the settings on his cable modem and discovered that Time Warner had hidden administrative functions from its customers with Javascript code. By simply disabling Javascript in his browser, he was able to see those functions, which included a tool to dump the router?s configuration file.

That file, it turned out, included the administrative login and password in cleartext. Chen investigated and found the same login and password could access the admin panels for every router in the SMC8014 series on Time Warner?s network ? a grave vulnerability, given that the routers also expose their web interfaces to the public-facing internet.
Regardless, I am inclined to believe that something else might be going on. I know I have one server in the states but for whatever reason one day Google seemed to think it was located in Thailand. I never investigated the matter further and just presumed that perhaps a group of Thai chatters on a nearby IP still located within the same ARIN allocation had set Thailand for their location and thus made Google think the range was mostly used by people in Thailand. I do think it might be a good idea to run some controlled (that's the keyword here) tests to see exactly what might be occurring.
signupdamnit is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote