Thread: Router hacked.
View Single Post
  #19  
Old 07-29-2008, 01:22 AM
unix unix is offline
Junior Member
 
Join Date: Sep 2009
Posts: 0
Default Re: Router hacked.


"larrys707" wrote in message
news:Gnojk.19289$N87.540@nlpi068.nbdc.sbc.com...
> This is a semi-Ubuntu question concerning Linksys routers. Comcast
> killed my port 25 outgoing e-mail claiming I was spamming and I have a
> WRT54G, but considering a GL and DD-WRT. Has anyone else had a wireless
> compromised like this? It was in 'open' unprotected mode for a while
> after a power glitch last week and apparently a war driver got into it
> before I found out.


If you have verified that the router actually forgot to be in WPA mode,
that's awfully naughty of it, power glitch or no. You might want to give a
shout in some Cisco newsgroups (Linksys is owned by Cisco). However, it's
also possible that through a hack of a (most likely) Windows machine, a
command got sent to the router at its normal default IP address to TELL it
to go into unprotected mode. Such a hack can happen through a virus or
through visiting an engineered or compromised web page with Javascript or
buffer overflow, etc. exploits in it. You might also want to consider a
different wireless router (Belkin/My Essentials is one of many) that lets
you set an administrative password on it, then set a nontrivial
administrative password as well as changing the IP address of its LAN to
something other than the default 192.168.2.X or whatever it may be.


Reply With Quote