Traffic hijacking. After a period of silence on this old attack, it has recently started to stir up. Many well-known brands of routers have successively discovered security vulnerabilities, attracting domestic media reports. As long as the user does not change the default password and opens a webpage or even post, the router configuration will be secretly modified. One night, the Internet has become vulnerable.
The attacks are still several attacks, and the reports are still the same brick-and-mortar reminders, so that everyone is numb. We have long been suffering from hijacking by operators and frequent advertisements. No loss has occurred for so many years, so you can close your eyes.
In fact, it is lucky to be hijacked by a carrier. Compared with the mysterious hackers hidden in the dark, operators, as public enterprises, still have to abide by the law. Although there is no program operation, there is still a bottom line for advertising hijacking. This doesn't mean that you can see advertisements. It reminds you that there is a risk of hijacking in the current network. On the contrary, everything seems calm and there is no exception, maybe there is already a huge number of spies lurking in the network, waiting for you to hook up at any time-this is not as simple as advertising, but to steal money!
Will I be hijacked?
Many people have a wrong idea: only those with weak security awareness will be infiltrated. As long as a variety of professional firewalls are installed and system patches are updated in a timely manner, all the passwords are complex. Hijacking is definitely not a turn for me.
Indeed, those with strong security awareness are naturally not prone to intrusion, but they are only for traditional virus Trojans. In the face of traffic hijacking, almost everyone is equal. Network security is different from traditional system security. The network is the combination of various hardware devices, especially the barrel effect. Even if you have a system like a god, your security level is instantly lowered when you encounter a device like a pig. Low-cost routes are becoming more and more popular. They carry a variety of Online Transaction traffic. Can you use them with confidence?
Even if you believe that the system and equipment are absolutely reliable, can you rest assured? In fact, there are not many problematic devices, but there are many problems. Are there still some defects? Yes, the most important thing is missing: the network environment.
If there are hackers lurking in the network environment, even if there is enough professional technology, it is difficult to escape. If the enemy is dark, it will fall into the trap.
Of course, the flies don't bite the eggs seamlessly. What are the risks that cause cracks in your network environment? There are too many attacks that have been popular since ancient times. You can even create one by yourself based on the actual environment.
Now I recall the hijacking cases I tried.
Ancient times:
Hub sniffing
MAC Spoofing
MAC erosion
ARP attack
DHCP phishing
DNS hijacking
CDN intrusion
Medieval:
Vro Weak Password
Vro CSRF
PPPoE phishing
Honeypot agent
Industrial Age:
Weak Wi-Fi password
WiFi pseudo-hotspot
Forced Wi-Fi disconnection
WLAN base station phishing