Automated Detection of Vulnerabilities in Black-Box Routers (And Other Network Devices)

by Gabi Nakibly
Sept. 13, 2017 1 comment www.blackhat.com blackbox

In this work, we present a method that leverages a formal black-box method to unearth deviations of protocol implementations in closed-source network devices with no need to access the binary or source code of the device. Our method finds such deviations in a fully automatic manner while leveraging a model-based testing approach. We applied the method to several routers to check their routing protocols' implementations (specifically OSPF) using the tool we found logical vulnerabilities in routers by Cisco and Quagga. The vulnerabilities affect in total dozens of models of routers. This is a joint work with Adi Sosnovich and Orna Grumberg.

https://www.blackhat.com/us-17/briefings.html#automated-detection-of-vulnerabilities-in-black-box...

Avatar
Steven Ulm 2 months ago

This is the first time when I read a more detailed analysis on the vulnerabilities of Black-Box Routers. Thanks for uploading it!

Reply