@munin so apparently most unmanaged switches have a 8051 connected to the switch fabric inside.
would it occur to you that pretty much any switch on your network could be monitoring or injecting traffic? sure would not to me
-
Show this thread
-
whitequark Retweeted whitequark
anything on the very popular RTL836x series would be susceptible... and note that the datasheet for those chips doesn't mention that it has a CPU -at all-https://twitter.com/whitequark/status/1175699669466284032 …
whitequark added,
3 replies 6 retweets 15 likesShow this thread -
Replying to @whitequark
Ultra-cheap managed switches use this to run a webui. I have one at home. I also have an unmanaged one where I patched the firmware to enable magic control packets on one port that can be used to configure VLANs, etc. It's all pretty common.
2 replies 0 retweets 7 likes -
Replying to @marcan42 @whitequark
The CPU is hideously underpowered though, so I doubt it can be used for too many nefarious purposes without causing issues. You can't, like, inspect all traffic or something.
1 reply 0 retweets 3 likes -
-
Replying to @whitequark @marcan42
less "monitor all traffic" and more "listen for magic sequence and run this exploit then" or something like it. ambient persistence
1 reply 0 retweets 3 likes
Yeah, you could at least use it as a control bouncer or the like.
-
-
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.