A Logo

Feel free to include my content in your page via my
RSS feed

Help Irongeek.com pay for
bandwidth and research equipment:

Search Irongeek.com:

Affiliates:
Irongeek Button
Social-engineer-training Button

Help Irongeek.com pay for bandwidth and research equipment:

paypalpixle


Simple Network Management Pwnd - Deral Heiland and Matthew Kienow Derbycon 2014 (Hacking Illustrated Series InfoSec Tutorial Videos)

Simple Network Management Pwnd
Deral Heiland and Matthew Kienow
Derbycon 2014

As a large number of embedded devices are deployed through- out home and industry worldwide. We find little or no effort being made to properly secure SNMP services, as a result potentially millions of these devices expose access to their SNMP services over the Internet. This creates a silent killer. Users are unaware as attackers can easily leverage these services to extract critical data and potentially alter security features leading to further compromise. During this presentation we will deliver an in depth examination of the SNMP protocol and associated device MIB security issues. Covering such topics as SNMP protocols, MIBs structures, Information extraction methodologies. Leveraging live demonstrations we will also show several examples of critical data leakage, and walk the audience through methods for extracting data and performing comparative analysis for the purpose of discovering critical information stored in SNMP private MIBs.

Back to Derbycon 2014 video list

Printable version of this article

15 most recent posts on Irongeek.com:


If you would like to republish one of the articles from this site on your webpage or print journal please contact IronGeek.

Copyright 2016, IronGeek
Louisville / Kentuckiana Information Security Enthusiast