[122039] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

lawful intercept/IOS at BlackHat DC, bypassing and recommendations

daemon@ATHENA.MIT.EDU (Gadi Evron)
Thu Feb 4 15:23:01 2010

Date: Thu, 04 Feb 2010 22:19:29 +0200
From: Gadi Evron <ge@linuxbox.org>
To: NANOG <nanog@nanog.org>
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org

"That peer-review is the basic purpose of my Blackhat talk and the 
associated paper. I plan to review Cisco’s architecture for lawful 
intercept and explain the approach a bad guy would take to getting 
access without authorization. I’ll identify several aspects of the 
design and implementation of the Lawful Intercept (LI) and Simple 
Network Management Protocol Version 3 (SNMPv3) protocols that can be 
exploited to gain access to the interface, and provide recommendations 
for mitigating those vulnerabilities in design, implementation, and 
deployment."

More here:
http://blogs.iss.net/archive/blackhatlitalk.html

	Gadi.



-- 
Gadi Evron,
ge@linuxbox.org.

Blog: http://gevron.livejournal.com/


home help back first fref pref prev next nref lref last post