News

Hundreds of Cisco Switches Vulnerable to Simple CIA Hacking Command

 

One of the revelations that will always astonish me is the pervasiveness and efficiency of state surveillance. Recently, the CIA had an internal wiki database exposed through WikiLeaks. Hearkening back to the days of the Snowden revelations, we are now discovering that he intelligence agency is sitting on a treasure trove of exploits and vulnerabilities. The latest gold mine is a vulnerability that impacts at least 318 different models of Cisco network switches.

Switches are critical to networks as all communication runs through them. Using a bug in the Cisco Cluster Management Protocol, attackers can use the telnet protocol to send malicious code to the switch. Due to the way telnet is handled on the switches, there is no limit on the code the attacker can tell the switch to run, allowing them full access. Once the attacker is in, all of the unsecured internal communication going over the switches can be eavesdropped easily.

For now, Cisco is suggesting that customer disable telnet on their switches. However, there are likely other exploits that Cisco is not yet aware of, or not yet willing to disclose until they have a fix. Switches have long been a target due to their role in networks, with the NSA going as far as to intercept physical shipments to tamper with them. Due to the size of the CIA breach, we can expect many more vulnerabilities to be disclosed over the coming days and weeks for pretty much every technology product worth hacking.

Samuel Wan

Samuel joined eTeknix in 2015 after becoming engrossed in technology and PC hardware. With his passion for gaming and hardware, tech writing was the logical step to share the latest news with the world. When he’s not busy dreaming about the latest hardware, he enjoys gaming, music, camping and reading.

Disqus Comments Loading...

Recent Posts

Electronic Arts Titles Played for Over 11 Billion Hours in 2024

Electronic Arts (EA) announced today that its games were played for over 11 billion hours…

2 days ago

Just 15% of Steam Gaming Time in 2024 Was Spent on New Releases

Steam's annual end-of-year recap, Steam Replay, provides fascinating insights into gamer habits by comparing individual…

2 days ago

STALKER 2 Gets Massive 110GB Patch With 1800+ Fixes

GSC GameWorld released a major title update for STALKER 2 this seeking, bringing the game…

2 days ago

Intel Unveils Core 200H Processors Based on the Previous Raptor Lake Refresh

Without any formal announcement, Intel appears to have revealed its new Core 200H series processors…

3 days ago

Ubisoft Reportedly Developing a New Quadruple A Game

Ubisoft is not having the best of times, but despite recent flops, the company still…

3 days ago

STALKER 2: Heart of Chornobyl Update 1.1 Fixes 1,800 Issues and Revamps A-Life 2.0

If you haven’t started playing STALKER 2: Heart of Chornobyl yet, now might be the…

3 days ago