<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>cablehaunt Archives - Gizmochina</title>
	<atom:link href="https://www.gizmochina.com/tag/cablehaunt/feed/" rel="self" type="application/rss+xml" />
	<link>https://www.gizmochina.com/tag/cablehaunt/</link>
	<description>Latest Tech News, Product Reviews and Deals</description>
	<lastBuildDate>Tue, 14 Jan 2020 10:27:30 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=5.9.9</generator>
	<item>
		<title>Cable Haunt: millions of Broadcom modems could be at risk of hacking</title>
		<link>https://www.gizmochina.com/2020/01/14/cable-haunt-millions-of-broadcom-modems-could-be-at-risk-of-hacking/</link>
		
		<dc:creator><![CDATA[Airyl Jaszly]]></dc:creator>
		<pubDate>Tue, 14 Jan 2020 10:27:30 +0000</pubDate>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Broadcom]]></category>
		<category><![CDATA[cablehaunt]]></category>
		<guid isPermaLink="false">https://www.gizmochina.com/?p=300613</guid>

					<description><![CDATA[<img width="300" height="141" src="https://www.gizmochina.com/wp-content/uploads/2020/01/cablehaunt1-300x141.jpg?x23692" class="webfeedsFeaturedVisual wp-post-image" alt="" loading="lazy" style="display: block; margin: auto; margin-bottom: 5px;max-width: 100%;" link_thumbnail="" srcset="https://www.gizmochina.com/wp-content/uploads/2020/01/cablehaunt1-300x141.jpg 300w, https://www.gizmochina.com/wp-content/uploads/2020/01/cablehaunt1.jpg 650w" sizes="(max-width: 300px) 100vw, 300px" /><p>Some of Broadcom’s cable modems come with flawed firmware which could mean more than 200 million vulnerable homes. Four Danish researchers, Alexander Dalsgaard Krog, Jens Hegner Stærmose, Kasper Kohsel Terndrup (from Lyrebirds) and freelancer Simon Vandel Sillesen uncovered CVE-2019-19494, a flaw which could enable man-in-the-middle attacks, information theft, communications eavesdropping, DDoS attacks and so on. [&#8230;]</p>
<p>The post <a rel="nofollow" href="https://www.gizmochina.com/2020/01/14/cable-haunt-millions-of-broadcom-modems-could-be-at-risk-of-hacking/">Cable Haunt: millions of Broadcom modems could be at risk of hacking</a> appeared first on <a rel="nofollow" href="https://www.gizmochina.com">Gizmochina</a>.</p>
]]></description>
										<content:encoded><![CDATA[<img width="300" height="141" src="https://www.gizmochina.com/wp-content/uploads/2020/01/cablehaunt1-300x141.jpg?x23692" class="webfeedsFeaturedVisual wp-post-image" alt="" loading="lazy" style="display: block; margin: auto; margin-bottom: 5px;max-width: 100%;" link_thumbnail="" srcset="https://www.gizmochina.com/wp-content/uploads/2020/01/cablehaunt1-300x141.jpg 300w, https://www.gizmochina.com/wp-content/uploads/2020/01/cablehaunt1.jpg 650w" sizes="(max-width: 300px) 100vw, 300px" /><p>Some of <a class="hawk-link-parsed" href="https://www.gizmochina.com/tag/broadcom/" target="_blank" rel="noopener noreferrer">Broadcom’s </a>cable modems come with flawed firmware which could mean more than 200 million vulnerable homes. Four Danish researchers, Alexander Dalsgaard Krog, Jens Hegner Stærmose, Kasper Kohsel Terndrup (from Lyrebirds) and freelancer Simon Vandel Sillesen uncovered CVE-2019-19494, a flaw which could enable man-in-the-middle attacks, information theft, communications eavesdropping, DDoS attacks and so on.</p>
<p>“The cable modems are vulnerable to remote code execution through a web-socket connection, bypassing normal CORS and SOC rules, and then subsequently by overflowing the registers and executing malicious functionality. The exploit is possible due to lack of protection proper authorization of the web-socket client, default credentials and a programming error in the spectrum analyzer,” the researchers <a href="https://github.com/Lyrebirds/Cable-Haunt-Report/releases/latest/download/report.pdf">explained</a>.</p>
<h6 class="related"><strong>EDITOR’S PICK: <a href="https://www.gizmochina.com/2020/01/14/qualcomm-slashing-snapdragon-765-prices-will-affect-mediatek-5g-chips-orders-ming-chi-kuo/">Qualcomm slashing Snapdragon 765 prices will affect MediaTek 5G chips orders: Ming Chi Kuo</a></strong></h6>
<p><img loading="lazy" class="aligncenter size-full wp-image-300618" src="https://www.gizmochina.com/wp-content/uploads/2020/01/618591172001_5850379105001_5850379697001-vs.jpg?x23692" alt="" width="480" height="270" srcset="https://www.gizmochina.com/wp-content/uploads/2020/01/618591172001_5850379105001_5850379697001-vs.jpg 480w, https://www.gizmochina.com/wp-content/uploads/2020/01/618591172001_5850379105001_5850379697001-vs-300x169.jpg 300w" sizes="(max-width: 480px) 100vw, 480px" /></p>
<p>“These vulnerabilities can give an attacker full remote control over the entire unit, and all the traffic that flows through it, while being invisible for both the user and ISP and able to ignore remote system updates.”</p>
<p>While the problem is clearly widespread, the researchers said it’s difficult to get a precise estimate of Cable Haunt reach. “The reason for this is that the vulnerability originated in reference software, which has seemingly been copied by different cable modems manufacturers when creating their cable modem firmware,” the researchers said on their website.</p>
<p><img loading="lazy" class="aligncenter size-full wp-image-300617" src="https://www.gizmochina.com/wp-content/uploads/2020/01/cablehaunt1.jpg?x23692" alt="" width="650" height="305" srcset="https://www.gizmochina.com/wp-content/uploads/2020/01/cablehaunt1.jpg 650w, https://www.gizmochina.com/wp-content/uploads/2020/01/cablehaunt1-300x141.jpg 300w" sizes="(max-width: 650px) 100vw, 650px" /></p>
<p>“This means that we have not been able to track the exact spread of the vulnerability and that it might present itself in slightly different ways for different manufacturers.”</p>
<p>The good news is that most Scandinavian Internet service providers (ISPs) report that they have already patched the affected devices, while the team responsible for the discovery has set up a dedicated <a href="https://cablehaunt.com/">Cable Haunt website</a> for users to track developments.</p>
<h6 class="related"><strong>UP NEXT: <a href="https://www.gizmochina.com/2020/01/13/oneplus-8-to-feature-2k-oled-display-with-120hz-refresh-rate/">OnePlus 8 to feature 2K OLED Display with 120Hz refresh rate</a></strong></h6>
<p>(<a href="https://cablehaunt.com/">Source</a>)</p>
<p>The post <a rel="nofollow" href="https://www.gizmochina.com/2020/01/14/cable-haunt-millions-of-broadcom-modems-could-be-at-risk-of-hacking/">Cable Haunt: millions of Broadcom modems could be at risk of hacking</a> appeared first on <a rel="nofollow" href="https://www.gizmochina.com">Gizmochina</a>.</p>
]]></content:encoded>
					
		
		
			</item>
	</channel>
</rss>

<!--
Performance optimized by W3 Total Cache. Learn more: https://www.boldgrid.com/w3-total-cache/

Object Caching 18/46 objects using Redis
Page Caching using Disk: Enhanced 
Content Delivery Network Full Site Delivery via cloudflare
Database Caching 13/29 queries in 0.011 seconds using Redis
Fragment Caching 2/3 fragments using Redis

Served from: www.gizmochina.com @ 2026-08-17 05:11:17 by W3 Total Cache
-->