29.01.2013 Views

Pwn@Home An Attack Path to jailbreaking your home router

Pwn@Home An Attack Path to jailbreaking your home router

Pwn@Home An Attack Path to jailbreaking your home router

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Set-<strong>to</strong>p-box Router Firmware<br />

Arbitrary code execution<br />

Lua interpreter exploitation<br />

5.1 version contains several bugs<br />

Lack of bytecode verification, directly loaded by the VM<br />

Must read: http://www.lua.org/wshop11/Cawley.pdf<br />

Exploitation by Peter Cawley, but no public exploit available<br />

Direct bytecode loading disabled in version 5.2

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!