Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]


Groups > rocksolid.shared.security > #69

Re: remote code exec in dnsmasq

From Guest <guest@retrobbs.rocksolidbbs.com>
Newsgroups rocksolid.shared.security
Subject Re: remote code exec in dnsmasq
Date 2021-01-20 13:25 -0500
Organization Dancing elephants
Message-ID <rua126$cic$1@def5.org> (permalink)
References <a5c363938980657088f898e6d9482201$1@retrobbs.i2p>

Show all headers | View raw


>However, your IP router might well run dnsmasq.

Yes, that is true. I consider my router to be compromised anyway, and don't trust it. 
I don't see though how this would compromise my tor setup. The authority tor nodes are hardcoded into tor (with their ip addresses), and everything after should be safe I think. I could be wrong of course.

There was some way to use dns to deanomize tor users, but it worked differently (see : https://nakedsecurity.sophos.com/2016/10/05/unmasking-tor-users-with-dns/ )

>Is there a way to check which dns server software is being used? I mean other than having full login access to whatever it runs.

If you can find out the system of your router, it should be easy to verify.

Or you run the attack against your own router (bit more effort).

--
Posted on def3

Back to rocksolid.shared.security | Previous | Next — Previous in thread | Next in thread | Find similar | Unroll thread


Thread

remote code exec in dnsmasq Anonymous <poster@anon.com> - 2021-01-20 05:30 -0800
  Re: remote code exec in dnsmasq Marc SCHAEFER <schaefer@alphanet.ch> - 2021-01-20 16:00 +0100
    Re: remote code exec in dnsmasq "AnonUser" <anonuser@rocksolidbbs.com.remove-32i-this> - 2021-01-20 18:47 +0000
      Re: remote code exec in dnsmasq Guest <guest@retrobbs.rocksolidbbs.com> - 2021-01-20 13:25 -0500
        Re: remote code exec in dnsmasq Marc SCHAEFER <schaefer@alphanet.ch> - 2021-01-21 08:40 +0100
      Re: remote code exec in dnsmasq Marc SCHAEFER <schaefer@alphanet.ch> - 2021-01-21 08:38 +0100

csiph-web