<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>Rynn's Tech Blog</title>
	<atom:link href="http://rynnux.wordpress.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://rynnux.wordpress.com</link>
	<description>[it's full of internets]</description>
	<lastBuildDate>Wed, 09 Apr 2008 08:03:11 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='rynnux.wordpress.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://s2.wp.com/i/buttonw-com.png</url>
		<title>Rynn's Tech Blog</title>
		<link>http://rynnux.wordpress.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://rynnux.wordpress.com/osd.xml" title="Rynn&#039;s Tech Blog" />
	<atom:link rel='hub' href='http://rynnux.wordpress.com/?pushpress=hub'/>
		<item>
		<title>Routers in Peril!</title>
		<link>http://rynnux.wordpress.com/2008/04/08/routers-in-peril/</link>
		<comments>http://rynnux.wordpress.com/2008/04/08/routers-in-peril/#comments</comments>
		<pubDate>Wed, 09 Apr 2008 04:43:45 +0000</pubDate>
		<dc:creator>Rynn</dc:creator>
				<category><![CDATA[security]]></category>
		<category><![CDATA[2wire]]></category>
		<category><![CDATA[hack]]></category>
		<category><![CDATA[linksys]]></category>
		<category><![CDATA[opendns]]></category>
		<category><![CDATA[password]]></category>
		<category><![CDATA[peril!]]></category>
		<category><![CDATA[router]]></category>

		<guid isPermaLink="false">http://rynnux.wordpress.com/?p=4</guid>
		<description><![CDATA[Bad day for router security. Pay attention, this could affect you or a router close to you! o_o Apparently 2Wire routers have a serious security flaw that is currently being exploited. Their routers are vulnerable to something known as DNS rebinding. Basically, if you visit a bad site (or one that&#8217;s been infected), a script [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=rynnux.wordpress.com&amp;blog=1570647&amp;post=4&amp;subd=rynnux&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Bad day for router security. Pay attention, this could affect you or a router close to you! o_o</p>
<p>Apparently 2Wire routers have a serious security flaw that is currently being <a title="2Wire Ignores Active Security Exploit" href="http://tech.slashdot.org/article.pl?sid=08/04/08/1946214" target="_blank">exploited</a>. Their routers are vulnerable to something known as <a title="How DNS Rebinding Works" href="http://www.hackszine.com/blog/archive/2007/08/dns_rebinding_how_an_attacker.html" target="_blank">DNS rebinding</a>. Basically, if you visit a bad site (or one that&#8217;s been infected), a script will run that will alter where your browser takes you after you type in a web address. This is very bad. For example, you go to check on your savings at <span style="color:#0000ff;">yourhappylittlebank.com</span>. Instead of going to the bank&#8217;s site, you&#8217;re taken to another one that looks exactly like it&#8230; but isn&#8217;t. You enter your login info and find that you can&#8217;t log in. Now hackers now have your account information! Sucks, huh? What&#8217;s even worse is that the vulnerability has been around for over 8 months, and 2Wire STILL hasn&#8217;t fixed it.</p>
<p>Are you at risk? Well, if you have DSL through AT&amp;T or Qwest and got your router through them, you most likely are. What can you do? Well&#8230; not a whole lot at the moment, at least not until 2Wire gets off their collective butts and releases a patch. Download <a title="Firefox" href="http://www.mozilla.com/en-US/firefox/" target="_blank">Firefox</a> and the <a title="NoScript" href="http://noscript.net/getit" target="_blank">NoScript</a> extension, and only allow sites you&#8217;re absolutely sure are safe. And just be really really really careful where you surf. @.@</p>
<p>Also in the news&#8230;</p>
<p>If you have a Linksys router and haven&#8217;t changed the default password, you&#8217;re vulnerable to the <a title="Linksys Router Hack" href="http://www.darkreading.com/document.asp?doc_id=150567" target="_blank">same thing</a>! Fortunately, it&#8217;s easily fixed in this case, and for the technically un-savvy, <a title="OpenDNS" href="http://www.opendns.com/" target="_blank">OpenDNS</a> created a service that makes it <a title="Fix My Linksys!" href="http://www.fixmylinksys.com/" target="_blank">really easy to change it</a>. While you&#8217;re at it, you might as well set your router to use OpenDNS. It&#8217;s a nifty replacement for your internet provider&#8217;s DNS server and offers automatic web address spelling-correction (i.e. google.cmo =&gt; google.com) and blocks phishing sites (sites that trick you into giving away your personal info). Also, it&#8217;s completely FREE!</p>
<p>Welp, that&#8217;s it for today. Hopefully I&#8217;ll make a habit of updating this thing. ^^</p>
<br /><img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/rynnux.wordpress.com/4/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/rynnux.wordpress.com/4/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/rynnux.wordpress.com/4/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/rynnux.wordpress.com/4/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/rynnux.wordpress.com/4/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/rynnux.wordpress.com/4/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/rynnux.wordpress.com/4/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/rynnux.wordpress.com/4/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/rynnux.wordpress.com/4/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/rynnux.wordpress.com/4/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/rynnux.wordpress.com/4/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/rynnux.wordpress.com/4/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/rynnux.wordpress.com/4/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/rynnux.wordpress.com/4/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/rynnux.wordpress.com/4/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/rynnux.wordpress.com/4/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=rynnux.wordpress.com&amp;blog=1570647&amp;post=4&amp;subd=rynnux&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://rynnux.wordpress.com/2008/04/08/routers-in-peril/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/3bd862f70cbfc9572efffdfa671941e0?s=96&#38;d=identicon" medium="image">
			<media:title type="html">Rynn</media:title>
		</media:content>
	</item>
	</channel>
</rss>
