4 ms·
Is it possible to get a ELI5 version of the impact of this?
by bee-boop-19 8y ago
Is it possible to get a ELI5 version of the impact of this?
- fulafel 8y ago> This allows us to enumerate a particular subset of active IPv6 hosts which can then be scanned. So if you have turned off the firewall in your CPE, someone might heave an easier time scanning your network, without having to find your ip address from a http access log or using webrtc etc. The property of scanning resitance due to address sparsity in IPv6 is not very strong (nor is it meant to be a security boundary) and there are many things like this that can go around it.
- snvzz 8y agoThe TL;DR solution is to just disable UPnP. It's crap and it shouldn't be used anyway.
- pferde 8y agoSure, it's "Go outside and play with your sister, sweetie, we'll talk about this once you're older".
- deleted 8y ago[deleted]
- iod 8y agoIf one were to scan all the IPv4 internet for broken/exposed UPnP service to target, they could then use IPv4 to craft a special message instructing the service to phone home to an IPv6-only domain. If the client has IPv6 enabled and the phone-home goes through, it is determined that there is a link from broken/exposed IPv4 UPnP to a potentially unknown IPv6 address. This gives a new set of previously unknown IPv6 addresses. These IPv6 addresses can now be scanned for other vulnerabilities.