Re: [pfSense-discussion] article: Millions of Home Routers at Risk

2010-08-02 Thread LM
What is the status of this? A patch is going to be released or what? El 31/07/10 20:51, Cristian Ionescu-Idbohrn escribió: "The only router software that I know of that does this now is pfsense," Heffner said. "They contacted me when my Black Hat talk abstract went up." http://www.esecurityplan

Re: [pfSense-discussion] article: Millions of Home Routers at Risk

2010-08-02 Thread Peter van Arkel
On Mon, 02 Aug 2010, LM wrote: > What is the status of this? > A patch is going to be released or what? Have you even read the article or what? :) -- Peter van Arkel T: +31 623988844 | p.vanar...@gmail.com RIPE: PvA63-RIPE | PGP: 0xA0991D6B ---

Re: [pfSense-discussion] article: Millions of Home Routers at Risk

2010-08-02 Thread LM
not really xD I just read it another one long time ago. Taking note about your answer... I think I should read it... xD Let me see... Well, no news for me, I still don't know what is going on with PFSense... (maybe it is clear in the article and maybe I need another coffee :D) El 02/08/

Re: [pfSense-discussion] article: Millions of Home Routers at Risk

2010-08-02 Thread Derrick MacPherson
The last 2 paragraphs: Heffner also called on router vendors to build in DNS Rebinding mitigations into their routers directly. "The only router software that I know of that does this now is pfsense," Heffner said. "They contacted me when my Black Hat talk abstract went up." pfsense rocks.. wa

Re: [pfSense-discussion] article: Millions of Home Routers at Risk

2010-08-02 Thread Chris Buechler
On Mon, Aug 2, 2010 at 3:53 AM, LM wrote: > What is the status of this? > A patch is going to be released or what? > I'll put up a blog post later - the just of it is use a strong password and you're fine. The protection we added simply protects from gross negligence (or future vulnerabilities in