Skip to content

Comment on Hacker 'handshake' hole found in common firewallsparent

Comments

Unfortunately, I haven't had time to read through the paper, and only got through the first few pages. From what I see though, the point of the attack is to punch through by using the improper handling of the split handshake by a client, which apparently fools some firewalls. For this to happen, you would only need to get a client to open a tcp connection to your malicious server, which is trivial. I'll have to take a closer look at the paper later on to to give more detail though. Hopefully someone else will chime in in the meantime.

And, from the Macrothink paper, it looks like it's not so much "open an inbound connection through the firewall" as "trick the firewall into not scanning the payload". Not relevant for, say, home routers that don't do scanning in the first place.

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.