Cisco SNMP configuration attack with a GRE tunnel

by Mati Aharoni, William M. Hidalgo

Throughout our education as system administrators, SNMP is often a topic that eludes us. One might have a vague understanding of what it's used for, and a general sense of security around some vague concept that it's read-only information. It is easy to be surprised when one first sees the output of an SNMP enumeration tool such as SNMP-Enum (by Filip Waeytens), when it's run against a Windows 2000 Server with the default SNMP service enabled. The wealth of information collected might leav...

Sept. 25, 2017 1 comment Symantec Pen Testing & Audits

Windows 2000, SNMP and Security

by Dirk Wisse

Not too long ago, when the Internet was still young and yet to be commercialized, security was mainly something for the other guy to be concerned about. For most people involved in the enterprise, the problem at hand was to get the thing up and running, and keep all the connected boxes happy. For every systems person involved, this meant managing dozens of routes, switches and computers, some of which where either too far away to get to the keyboard, or had no keyboard at all. Telneting to th...

Sept. 21, 2017 0 comments Symantec


