firewalls can help hackers break into facebook
Last Updated : GMT 06:49:16
Arab Today, arab today
Arab Today, arab today
Last Updated : GMT 06:49:16
Arab Today, arab today

Firewalls can help hackers break into Facebook

Arab Today, arab today

Arab Today, arab today Firewalls can help hackers break into Facebook

Washington - Arabstoday

Firewall technology designed to boost security can unwittingly reveal data that could help a hacker break into Facebook and Twitter accounts, a new study says. Using Android smartphones, Z. Morley Mao, computer science associate professor at the University of Michigan, and doctoral student Zhiyun Qian revealed how an attacker could hijack a TCP (transmission control protocol) Internet connection by taking advantage of publicly available information on smartphones. Hackers could also take advantage of users' willingness to download untrusted apps and network firewall middleboxes, which block data bundles that don't appear to be part of the flow of information traffic. The researchers detected these middleboxes on 32 per cent of the nearly 150 networks they tested worldwide. "Firewall middleboxes are supposed to protect against this kind of attack, but it turns out they do the opposite," Qian said. "Most vendors and carriers that deploy such firewall middleboxes still believe they are safe and we want them to be aware of this design flaw," said Qian, according to a Michigan statement. Middleboxes monitor the "sequence numbers" of data packets on their way to mobile devices. When you snap and share a photo with a friend, for example, it gets chopped into numerous packets before it's sent across the network. Your friend's smartphone looks to the sequence numbers to put the picture back together. Middleboxes could help hackers use the process of elimination to home in on a number in the right range. "An attacker can try to guess at sequence numbers. It's usually hard to get feedback on whether a guessed number is correct, but the firewall middlebox makes this possible," Qian said. "The attacker can try a range of sequence numbers. The firewall will only allow one through if it is in the valid range." How does the attacker know he has succeeded? That's where the Android spyware comes in (smartphone malware is already very popular, the researchers say, and it wouldn't be hard for an attacker to add this capability into an existing program). The intelligence the spyware needs is not privileged information. It doesn't need special administrator or root access. It would just read a couple of the phone's publicly available incoming packet counters and let the attacker know when the counters -advanced. Armed with a valid sequence number, the hacker could spoof Facebook or Twitter's HTTP (as opposed to the more secure HTTPS) web login page and gain the user's passwords.

arabstoday
arabstoday

Name *

E-mail *

Comment Title*

Comment *

: Characters Left

Mandatory *

Terms of use

Publishing Terms: Not to offend the author, or to persons or sanctities or attacking religions or divine self. And stay away from sectarian and racial incitement and insults.

I agree with the Terms of Use

Security Code*

firewalls can help hackers break into facebook firewalls can help hackers break into facebook

 



Name *

E-mail *

Comment Title*

Comment *

: Characters Left

Mandatory *

Terms of use

Publishing Terms: Not to offend the author, or to persons or sanctities or attacking religions or divine self. And stay away from sectarian and racial incitement and insults.

I agree with the Terms of Use

Security Code*

firewalls can help hackers break into facebook firewalls can help hackers break into facebook

 



GMT 02:34 2018 Tuesday ,23 January

Royal support for cultural movement hailed

GMT 20:54 2017 Saturday ,09 September

Bahrain weather forecast

GMT 18:33 2017 Wednesday ,25 January

Carrick says Manchester United will go for it at Hull

GMT 03:01 2018 Wednesday ,10 January

Conjoined Gaza twins separated

GMT 04:47 2017 Sunday ,22 October

Vogue and VICE to launch editorial collaboration

GMT 22:10 2016 Thursday ,27 October

King reiterates Saudi support for Syrians

GMT 09:11 2017 Tuesday ,28 February

Samsung heir indicted for bribery, embezzlement

GMT 12:25 2017 Friday ,20 October

Trump gives self 10/10 for Puerto Rico response

GMT 12:52 2018 Monday ,15 October

UN chief slams polls-related attacks in Afghanistan

GMT 08:49 2018 Wednesday ,03 January

YouTube star apologizes for viral suicide video

GMT 23:06 2017 Wednesday ,20 December

Officers' Club celebrates National Days
Arab Today, arab today
 
 Arab Today Facebook,arab today facebook  Arab Today Twitter,arab today twitter Arab Today Rss,arab today rss  Arab Today Youtube,arab today youtube  Arab Today Youtube,arab today youtube

Maintained and developed by Arabs Today Group SAL.
All rights reserved to Arab Today Media Group 2025 ©

Maintained and developed by Arabs Today Group SAL.
All rights reserved to Arab Today Media Group 2025 ©

arabstoday arabstoday arabstoday arabstoday
arabstoday arabstoday arabstoday
arabstoday
بناية النخيل - رأس النبع _ خلف السفارة الفرنسية _بيروت - لبنان
arabstoday, Arabstoday, Arabstoday