All Projects → LunNova → Puma6Fail

LunNova / Puma6Fail

Licence: MIT license
CVE-2017-5693 Denial of service vulnerability in Puma 6 modems

Programming Languages

rust
11053 projects

Projects that are alternatives of or similar to Puma6Fail

Ssl Checker
Python script that collects SSL/TLS information from hosts
Stars: ✭ 94 (+452.94%)
Mutual labels:  security-vulnerability
Cod Exploits
☠️ Call of Duty - Vulnerabilities and proof-of-concepts
Stars: ✭ 178 (+947.06%)
Mutual labels:  security-vulnerability
Vulnogram
Vulnogram is a tool for creating and editing CVE information in CVE JSON format
Stars: ✭ 103 (+505.88%)
Mutual labels:  security-vulnerability
Compsecattacklabs
Contains Attack labs
Stars: ✭ 130 (+664.71%)
Mutual labels:  security-vulnerability
Recsech
Recsech is a tool for doing Footprinting and Reconnaissance on the target web. Recsech collects information such as DNS Information, Sub Domains, HoneySpot Detected, Subdomain takeovers, Reconnaissance On Github and much more you can see in Features in tools .
Stars: ✭ 173 (+917.65%)
Mutual labels:  security-vulnerability
H1domains
HackerOne "in scope" domains
Stars: ✭ 223 (+1211.76%)
Mutual labels:  security-vulnerability
Btle Sniffer
Passively scan for Bluetooth Low Energy devices and attempt to fingerprint them
Stars: ✭ 87 (+411.76%)
Mutual labels:  security-vulnerability
shieldfy-php-client
The official PHP SDK for Shieldfy
Stars: ✭ 15 (-11.76%)
Mutual labels:  security-vulnerability
Securityadvisories
🔐 Security advisories as a simple composer exclusion list, updated daily
Stars: ✭ 2,279 (+13305.88%)
Mutual labels:  security-vulnerability
vilicus
Vilicus is an open source tool that orchestrates security scans of container images(docker/oci) and centralizes all results into a database for further analysis and metrics.
Stars: ✭ 82 (+382.35%)
Mutual labels:  security-vulnerability
Zen Rails Security Checklist
Checklist of security precautions for Ruby on Rails applications.
Stars: ✭ 1,765 (+10282.35%)
Mutual labels:  security-vulnerability
Webpocket
Exploit management framework
Stars: ✭ 142 (+735.29%)
Mutual labels:  security-vulnerability
Insecureprogramming
mirror of gera's insecure programming examples | http://community.coresecurity.com/~gera/InsecureProgramming/
Stars: ✭ 229 (+1247.06%)
Mutual labels:  security-vulnerability
Study Struts2 S2 054 055 Jackson Cve 2017 7525 cve 2017 15095
Struts2の脆弱性S2-045, S2-055 および Jackson の脆弱性 CVE-2017-7525, CVE-2017-15095 の調査報告
Stars: ✭ 107 (+529.41%)
Mutual labels:  security-vulnerability
weblogic honeypot
WebLogic Honeypot is a low interaction honeypot to detect CVE-2017-10271 in the Oracle WebLogic Server component of Oracle Fusion Middleware. This is a Remote Code Execution vulnerability.
Stars: ✭ 30 (+76.47%)
Mutual labels:  security-vulnerability
Crlf Injection Scanner
Command line tool for testing CRLF injection on a list of domains.
Stars: ✭ 91 (+435.29%)
Mutual labels:  security-vulnerability
Crithit
Takes a single wordlist item and tests it one by one over a large collection of websites before moving onto the next. Create signatures to cross-check vulnerabilities over multiple hosts.
Stars: ✭ 182 (+970.59%)
Mutual labels:  security-vulnerability
exploits
Some of my public exploits
Stars: ✭ 50 (+194.12%)
Mutual labels:  security-vulnerability
hikvision-recover
Command-line tool for generating recovery codes for Hikvision IP Cameras
Stars: ✭ 40 (+135.29%)
Mutual labels:  security-vulnerability
Bughound
Static code analysis tool based on Elasticsearch
Stars: ✭ 124 (+629.41%)
Mutual labels:  security-vulnerability

Puma 6 fail demo

Tool to demonstrate issue from this post found by mackey: https://www.dslreports.com/forum/r31377755-

Proof of concept code is already public elsewhere.

See CVE-2017-5693.

DoS occurs in either direction - UDP from LAN to WAN or WAN to LAN.

Testing through a local Virgin Media Super Hub 3 modem:

1mbps/2000pps   causes ~20ms average latency rise with 200 maximum
2mbps/4000pps   causes ~200ms average latency and 65% packet loss
3mbps/6000pps   causes ~250ms average latency and 85% packet loss

Smokeping graph while testing

Note that the project description data, including the texts, logos, images, and/or trademarks, for each open source project belongs to its rightful owner. If you wish to add or remove any projects, please contact us at [email protected].