Author Topic: Cisco IOS vulnarability research project  (Read 820 times)

0 Members and 1 Guest are viewing this topic.

Offline s1l3nc3

  • Serf
  • *
  • Posts: 33
  • Cookies: -11
    • View Profile
Cisco IOS vulnarability research project
« on: October 08, 2013, 08:45:56 pm »
hello EZ crew :D

i was wondering weather you could give me advice and guidance in relation to a project that i am looking to carry out for my final year project...

i have recently been looking at cisco router vulnerabitity research and i noticed that this is area that is not given as much attention as it should be, i have conducted various research in relation to this subject and i have found that it is something that is doable and possible but it is meant to be very very hard.

so what i want from you guys is to give me source and advice espeacly in relation to the IOS, im not fairly interested in like a manuel on how to use cisco devices because i can easily find this my self i would like something in relation to maybe the programing of the IOS and details about it in relation to the funaction, boot process ect

im looking for somewhat aracane knowledge in relation to this subject...

any tools, any research anything related to this would be really help full, books also will be good

i have got the shell coders hand book so but haven't finished reading the part related to this subject carefully

my main aim is to end up with a remote exploit that allows a user to take full controll over the OS

if this is a myth i might just end up writing shell code for the router...
01101000 01110101 01101110 01100111 01110010 01111001 00110110 00110010

Offline lsquared

  • /dev/null
  • *
  • Posts: 15
  • Cookies: 0
    • View Profile
Re: Cisco IOS vulnarability research project
« Reply #1 on: October 09, 2013, 12:25:43 am »
I think this is a pretty cool project idea in my opinion. Have you thought about looking into the common protocols that run on Cisco routers that you could then exploit? Some that would come to my mind would be routing protocols such as EIGRP (which soon will not be Cisco proprietary anymore), HTTP server if enabled, FTP/TFTP normally used to load configs, etc.


You can find a lot of information about the IOS on Cisco's website and to my knowledge IOS was written in plain C. Here are some exploits/rootkits I found online: http://ethicalhackernet.blogspot.com/2009/07/cisco-ios-geometry-of-varying-threats.html


If you want any help or anything PM me and I'd be wiling to go further. I have a few years of experience with Cisco equipment such as routers, switches, ap's, wlan controllers, etc.
« Last Edit: October 09, 2013, 12:39:09 am by lsquared »

Offline s1l3nc3

  • Serf
  • *
  • Posts: 33
  • Cookies: -11
    • View Profile
Re: Cisco IOS vulnarability research project
« Reply #2 on: October 17, 2013, 01:58:54 pm »
ok thanks bro :) ima look in to that and i will massage you soon as i get started ect


i will also be posting the research Matireall i find on here for any one who needs it
01101000 01110101 01101110 01100111 01110010 01111001 00110110 00110010