sfx2000
Part of the Furniture
From time to time, I do post items that may be of interest to the community...
Rapid7 (think Metasploit commercialized) has recented released a post/whitepaper on UPnP security concerns.
The "Portable UPNP SDK" is used in many Linux/BSD based devices, and depending on your configuration, you might be at risk. This may include Routers, SOHO WiFi Access Points, NAS Boxes, Network Media Players, etc...
Link here -- https://community.rapid7.com/commun...s-in-universal-plug-and-play-unplug-dont-play
They also provide a tool that you (and the bad guys) can use to scan your internal network (and the bad guys to scan your WAN side).
Rapid7 (think Metasploit commercialized) has recented released a post/whitepaper on UPnP security concerns.
The "Portable UPNP SDK" is used in many Linux/BSD based devices, and depending on your configuration, you might be at risk. This may include Routers, SOHO WiFi Access Points, NAS Boxes, Network Media Players, etc...
Link here -- https://community.rapid7.com/commun...s-in-universal-plug-and-play-unplug-dont-play
They also provide a tool that you (and the bad guys) can use to scan your internal network (and the bad guys to scan your WAN side).