1427
Comments (131)
sorted by:
You're viewing a single comment thread. View all comments, or full comment thread.
4
sillBag 4 points ago +4 / -0

And also, for server side, there is a SolarWinds client that they install which grants even scarier capability.

Real time database monitoring. Can even export and download the whole database with one click.

It is scary powerful and we have had discussions over the years to eliminate it due to the possible windows of opportunities for a hacker to take advantage of.

2
Anishinaabe 2 points ago +2 / -0

And what, in your opinion, was the desired effect?

3
sillBag 3 points ago +3 / -0

Well - it is really impossible to say. Definitely it grants an extreme amount of information gathering capability. So that is the most likely effect desired.

But on the extreme end, if say Level3.net (largest internet backbone in the country) uses SNMP to manage their network devices (likely), then they could literally break the Internet on a nationwide scale.

2
Anishinaabe 2 points ago +2 / -0

What does this mean in layman's terms, sir? What could be achieved with an attack like this?

3
sillBag 3 points ago +3 / -0

They could take down major network backbone's across the globe. They could gather state and company secrets and use it for blackmail or other evil purposes.

2
Anishinaabe 2 points ago +2 / -0

I figured any attack would first begin with an attempted shutdown of electronic infrastructure. I figured an EMP, but it sounds like this could possibly be a cheaper way to do it if it's true.

3
sillBag 3 points ago +3 / -0

I won't gas light you. I have no way to tell you if it is possible. It entirely depends how major network backbones network management programs are setup. Specifically what protocol are they using to remotely manage the routers, switches, etc across the globe.

Most... I would assume... are still using SNMP (in conjunction with other newer tools)