Friday, October 18, 2013

D-Link Router Backdoor Security Alert




D-Link will address by the end of October a security issue in some of its routers that could allow attackers to change the device settings without requiring a username and password.  The issue consists of a backdoor-type function built into the firmware of some D-Link routers that can be used to bypass the normal authentication procedure on their Web-based user interfaces.  D-Link will release firmware updates to address the vulnerability in affected routers by the end of October, the networking equipment manufacturer said via email.  This backdoor poses a threat because any user who connects to the wireless or any piece of malware running on a computer inside the network can exploit it to make unauthorized changes to the router’s configuration. Such changes can have serious security consequences.  For example, changing the DNS (Domain Name System) servers used by the router—and inherently every device on the network—with DNS servers controlled by an attacker would enable the attacker to redirect users to rogue websites when trying to access legitimate ones.  If you receive unsolicited emails that relate to security vulnerabilities and prompt you to action, please ignore it.  When you click on links in such emails, it could allow unauthorized persons to access your router. 

It is our recommendation to utilize a Business Class Firewall instead of a Router meant for home use.  Low cost home routers have features that automatically open potential security holes (UPNP).  While the UPNP feature makes it easy to get an XBOX Game Console or home automation thermostat working on the internet, a malicious piece of software could open your whole network to the world.  Firewalls inherently have enhanced security features that protect the network.  Firewalls such as the one we utilize (WatchGuard) do not have UPNP and include subscription services that allow us to proactively protect the network including blocking known and emerging malicious websites and antivirus scanning of all downloaded files.  Here is a link that describes some of the services available for the WatchGuard Firewall.  

We strongly suggest you take a Proactive approach rather than a Reactive approach.    
Call us to find out more about solutions to protect your network and your data.


Michael Glasser, Glasser Tech LLC (516) 762-0155

No comments:

Post a Comment