2020-07-09 00:00:00

SecurityAsus|AVM|consumer|D-Link|Fraunhofer|home|Linksys|Netgear|research|router|TP-Link|Zyxel

Home routers are a security nightmare, German researchers discover

As long as that small router box on the corner of a desk blinks its lights and keeps the internet connection alive, most people probably don't pay attention to the vital piece of hardware at home. You may think of the router as your home Wi-Fi hotspot, cable modem, or fiber connection, but it actually comprises a complex stack of software that manages internet access for all your devices, and faces the wild world of internet. The bad news is that Fraunhofer researchers have found out that security risks in home routers are high.

A team at the Cyber Analysis and Defense department at Fraunhofer Institute has published Home Router Security Report 2020 that lays out the ugly truth about internet router products that vendors market to consumers. The team tested 127 routers from Asus, AVM, D-Link, Linksys, Netgear, TP-Link, and Zyxel. All products had security problems. The most serious risks discovered in the tests were:

  • Vendors don't deliver security updates to the routers. 36% of products haven't received an update during the last 12 months. The latest patch in one product was more than five years old.
  • More than 90% of tested routers rely on Linux kernel as their core software. More than half of Linux-powered routers are still using an ancient version 2 or 3 of the software. These old versions are not maintained anymore, and possible vulnerabilities are not fixed. Common Linux kernel version on computers is 4 or 5, while version 5.8 is being developed by a team led by Linus Torvalds.
  • Admin passwords that can't be changed by users was a feature in some routers, as well as default passwords that are widely known across hacker communities.

AVM routers were ranked the least vulnerable in the test, with Asus and Netgear as the second safest.

The security of a router is important because it is the gateway to the devices at home, and it is the first hijacking target for criminals

Routers are small computers that are directly connected to the traffic flow of the internet. Criminals who operate botnet networks like Bashlite or Mirai are looking for devices they can hijack for their own use. For instance, a distributed denial-of-service attack (DDoS) attack can be executed using hijacked routers.

Wired has good advice for steps every home router owner should take to secure the device. After changing the default password, enable secure Wi-Fi, disable UpnP, and create a guest access for accidental users who visit you (if available in the router settings).

You should also check if security updates are automatic, or do you have to initiate the process manually. Advanced users may even completely replace the router's default software with dd-wrt open source package.

Via Infosecurity Magazine.

News

2025-01-15 08:59:00

Not to mention travel – when real life experiences in a destination don’t match the expectations and everything that can go wrong, goes wrong. Well, that’s the beauty of #travel. #Europehttps://klaava.com/nitpickers-travel-journal-travel-lessons-learned-in-2024/


News

2025-01-11 13:25:00

A conclusion from the Traffic Scorecard 2024 results is it takes about double the time to drive along the streets of London (the most congested city in #Europe) than the streets of Munich, which is ranked the 21st most congested European city. #traffic #travelhttps://klaava.com/the-cities-in-europe-where-people-are-stuck-in-traffic-most-often/


A shop dedicated to tasty juice

2025-01-09 14:04:10

arihak

A shop dedicated to tasty juice


in the busy old town center.

2025-01-08 16:16:08

in the busy old town center.


News

2025-01-07 14:56:00

A reminder for keeping your data safe when traveling. Why? It is likely that you have to access your most critical data in risky situations on the road.https://cybernews.com/privacy/how-to-protect-your-sensitive-information-while-traveling/


News

2025-01-02 16:33:00

What about the scenery, you who are hurrying to the other side?#streetphotography#streetphoto


News

2025-01-01 16:06:00

According to a survey, third of travelers are victims of online booking scams. Since it is so convenient to make travel reservations online, that’s what we do. The problem is that we haven’t adopted new methods to avoid online scams. #travel #scamhttps://klaava.com/a-traveler-is-more-likely-to-get-scammed-when-booking-a-trip-than-being-robbed-in-a-destination/


Perhaps road builders had too much time?

2024-12-29 15:19:44

Perhaps road builders had too much time?


News

2024-12-27 18:25:00

#Photography is full of so-called “rules” that can feel overwhelming. However, some of these “rules” are downright myths.https://www.diyphotography.net/debunking-seven-common-myths-photographers-still-believe-in/


What should I read next?

2024-12-25 15:18:22

arihak

What should I read next?


News

2024-12-23 11:34:00

Since #EU #DMA has specified #Apple as a #gatekeeper in #mobile devices, EU considers Apple should implement several iOS connectivity features, predominantly used for and by connected devices. For instance, notifications, automatic Wi-Fi connection, AirPlay, AirDrop, or Bluetooth audio switching.https://digital-markets-act.ec.europa.eu/commission-seeks-feedback-measures-apple-should-take-ensure-interoperability-under-digital-markets-2024-12-19_en


News

2024-12-21 14:51:00

Smartphone users in the US are not impressed with the latest artificial intelligence features on their devices with 73 percent of Apple users and 87 percent of Samsung users unsatisfied, according to a new study. #phone #AIhttps://petapixel.com/2024/12/19/majority-of-smartphone-users-are-unimpressed-with-ai-features-study-finds/


There should be enough ice already to open the hotel

2024-12-20 16:40:17

There should be enough ice already to open the hotel


Hiking on a mountain experience: the end of an ancient tunnel

2024-12-09 14:12:31

arihak

Hiking on a mountain experience: the end of an ancient tunnel


on a hot summer day

2024-12-02 18:47:01

on a hot summer day


Cloudy day in a valley

2024-11-25 16:31:59

arihak

Cloudy day in a valley


In the shade of a lone palm tree

2024-11-25 15:46:29

In the shade of a lone palm tree


an abandoned town?

2024-11-07 18:35:22

an abandoned town?


A quiet moment between heavy rain

2024-10-24 17:34:45

A quiet moment between heavy rain


Everyone loves a pretty mountain scenery

2024-10-24 16:54:02

arihak

Everyone loves a pretty mountain scenery