ATTENTION: You are viewing a page formatted for mobile devices; to view the full web page, click HERE.

Main Area and Open Discussion > Living Room

Homeland Security: Disable UPnP

<< < (6/6)

app103:
Unfortunately, ScanNow requires Java. Kind of ironic to make your system vulnerable one way to find out if you are vulnerable another.  :huh:

Tinman57:
(my fiber connection is 40Mb symetrical). -Stoic Joker (February 01, 2013, 06:58 AM)
--- End quote ---

  YOU SpoilerDICK!   :P

tomos:
Unfortunately, ScanNow requires Java. Kind of ironic to make your system vulnerable one way to find out if you are vulnerable another.  :huh:
-app103 (February 02, 2013, 07:20 PM)
--- End quote ---

is the online router scan enough if you're using a stand-alone machine?
http://upnp-check.rapid7.com/

(I have java uninstalled - a check above gets me "Congratulations! Your router did not respond to a UPnP discovery request.")

f0dder:
is the online router scan enough if you're using a stand-alone machine?
http://upnp-check.rapid7.com/-tomos (February 03, 2013, 07:26 AM)
--- End quote ---
Seems like they do a server-side check to your WAN IP - so you'll get to see whether your router is exploitable from the intarwebs (which is what really matters), but you won't get notified about other devices on your LAN.

Curt:
How to fix the UPnP security holes Universal Plug and Play has always had security holes. Here's how to plug them. http://www.zdnet.com/how-to-fix-the-upnp-security-holes-7000010584-Tinman57 (January 31, 2013, 08:02 PM)
--- End quote ---
thanks for that - unfortunately, it sounds like you've got to be pretty much an expert to figure this stuff out :( -tomos (February 01, 2013, 08:47 AM)
--- End quote ---
-exactly my thought as well. So I wrote Agnitum, because: So what can you do in the meantime? Just keep that firewall up once and for all against UPnP traffic.-ZDNet
--- End quote ---
We've survived UPnP until now, maybe all this is not extremely urgent... I hope for an answer no later than Monday. -Curt (February 01, 2013, 10:18 AM)
--- End quote ---

I forgot to post the answer:

Your PC is protected by Outpost default rules:
(Settings - Application rules - svchost.exe - Network rules - block UPnP rule (1900 UDP))

Unfortunately,  Outpost  canĀ“t protect routers as it protects only the PC where the product is installed.-Agnitum
--- End quote ---

Navigation

[0] Message Index

[*] Previous page

Go to full version