November 2017
Intermediate to advanced
452 pages
11h 46m
English
|
Threat description |
Attacker could gain admin access to the filesystem and attack the LAN |
|
Threat target |
DVR firmware. |
|
Attack techniques |
Access to the console could be enabled via SSH or Telnet. Attacker can discover a buffer overflow to access filesystem contents and utilize post-exploitation techniques. Attackers locate a known bug in libraries used by the DVR. |
|
Countermeasures |
DVR enforces auto-update features preventing vulnerable libraries and services from being enabled. |
Read now
Unlock full access