HomeSecurityVulnerabilities in popular routers: What you should check

Vulnerabilities in popular routers: What to check

Researchers have discovered 125 security vulnerabilities in 13 popular SOHO routers and NAS devices, making the models vulnerable to remote attacks and consequently putting millions of users at risk.

The research by Independent Security Evaluators (ISE), an independent security consultancy, evaluated everything from widely used models to high-end devices intended for businesses, with interest mainly focused on devices from well-known and trusted manufacturers.

Each of the 13 devices was found to contain at least one Web Application security vulnerability, which could be used by an attacker to gain remote access to the device or management panel, and from there, for further attacks within a home or corporate network.

Gaps in authentication and authorized access were also identified. ISE reported the findings to manufacturers, some of whom were quick to fix the issues, but others did not respond in a timely manner.SOHO router

These findings show that routers can be attacked quite easily, making them the Achilles heel of overall Internet security. For this reason, and regardless of the model used, ESET recommends that every user take some time and check five key points in the security of a router.

Password. Many users do not bother to change the password when installing the router on the network, however, the pre-installed passwords of all routers can be easily found with a simple search on the Internet. For this reason, it is necessary to change the username and key and use strong passwords.

Create separate networks. Most modern routers offer the ability to create separate networks for each purpose, while some models have firewalls that allow the analysis of incoming and outgoing traffic and determine which connections are allowed. With these functions, the most "sensitive" devices can be separated or some isolated from the rest of the network.

Disable unused services and functions. If remote access to the network is not necessary, it is necessary to control management services via secure protocols (SSH, HTTPS) and disable any function that is not used, as well as disconnect all connected devices, such as camera, microphone, etc. This way, the "backdoors" are closed to hackers and nosy neighbors.

Regular monitoring. In order to monitor unusual behavior or identify a potential intruder, the network owner must be constantly able to identify how many and which devices are connected, which is achieved by dedicating a little time at regular intervals to verification.

Firmware update . In routers, as in most IoT devices, operating system updates are not done automatically, so the user, knowing the router model and firmware version, needs to visit the manufacturer's website and check if there is an updated version to install.

📧
Subscribe to the SecNews Newsletter

The most important Security & Technology news in your Inbox.

SecNews
SecNewshttps://www.secnews.gr
In a world without fences and walls, who needs Gates and Windows

SEARCH

FOLLOW US

📧
Newsletter SecNews
The most important Security & Technology news in your inbox.

LIVE NEWS