
by Gregory Pickett
The Open Network Install Environment, or ONIE, makes commodity or WhiteBox Ethernet possible. By placing a common, Linux-based, install environment onto the firmware of the switch, customers can deploy the Network Operating Systems of their choice onto the switch and do so whenever they like without replacing the hardware. The problem is, if this gets compromised, it also makes it possible for hackers to install malware onto the switch. Malware that can manipulate it and your network, and keep doing it long after a Network Operating System reinstall.
With no secure boot, no encryption, no authentication, predictable HTTP/TFTP waterfalls, and exposed post-installation partition, ONIE is very susceptible to compromise. And with Network Operating Systems such as Switch Light, Cumulus Linux, and Mellanox-OS via their agents Indigo and eSwitchd not exactly putting up a fight with problems like no authentication, no encryption, poor encryption, and insufficient isolation, this is a real possibility.
In this session, we'll cover the weaknesses in ONIE, ways to reach the platform through these Network Operating Systems, and what can happen if we don't properly protect the Control Plane these switches run on. I'll even demonstrate with a drive-by web-attack that is able to pivot through a Windows management station to reach the isolated control plane network, and infect one of these ONIE-based switches with malware, malware that's there even after a refresh. You'll even get the source code to take home with you to see how easily it's done. Finally, we'll talk about how to compensate for these issues so that your network doesn't become infected with and manipulated by this sort of persistent firmware-level malware.
Staying Persistent In Software Defined Networks blackhat 2015 |
| 3 Likes | 3 Dislikes |
| 356 views views | 117K followers |
| People & Blogs | Upload TimePublished on 29 Dec 2015 |
Related keywords
- infosec news
- information security manager
- blackhat asia 2019
- blackhat 2019
- infosec twitter
- blackhat 2018
- black hat seo technique
- blackhat europe
- blackhat badger sekiro
- black hat x reader
- black hat cartoon
- black hat x dr flug
- cyber securityとは
- blackhat conference 2019
- cyber security cloud
- black hat full movie
- blackhat badger
- blackhat forum
- information security foundation 勉強
- infosec rotkreuz
- cyber security framework
- information security policy template
- infosecurity utrecht
- infosec ups system
- cyber security news
- cyber security act
- infosecurity
- blackhat full movie
- infosec blog
- black hat badger
- information security foundation 参考書
- information security management system
- cyber security conference
- black hat seo
- cyber security pro
- black hat movie
- blackhat imdb
- infosec podcast
- black hat cast
- cyber security pro 新しいネットワークが検出されました
- cyber security cloud managed rules
- cyber security measures
- information security governance
- infosec global
- infosecurity europe 2020
- infosec health
- infosec magazine
- information security 日本語
- infosec 19
- black hat anime
- information security foundation
- infosecurity magazine
- cyber security tokyo
- black hat meaning
- black hatch
- information security definition
- information security pdf
- infosec europe 2019
- cyber security market
- infosec institute
- infosec 2019 london
- information security foundation 難易度
- black hatch gamefowl
- cyber security management system
- information security certifications
- blackhat film
- cyber security pro アンインストール
- information security specialist
- cyber security 意味
- cyber security analyst
- information security policy
- black hat usa 2019
- information security forum
- information security news
- infosec conferences
- information security officer
- infosekta
- cyber security japan
- blackhat trailer
- information security analyst
- cyber security university
- black hat hacker
- black hat forum
- cyber security company
- black hat hacking
- black hat villainous
- blackhat conference
- information security foundation based on iso/iec 27001
- blackhat usa
- cyber security report
- blackhatworld
- black hat x demencia
- information security management
- blackhat cast
- black hat 2019
- infosec reactions
Không có nhận xét nào:
Đăng nhận xét