Skip to content

Topic

Network authentication, authorisation and accounting

The systems and protocols, such as TACACS+ and RADIUS, that verify who can log into network devices, control what they may do, and record their actions.

Current clusters

build1 publisher

Elttam's two-packet exploit runs code on TACACS+ servers before anyone logs in

Elttam says a TACACS+ server flaw lets attackers run code before login with two packets and an offline crack of the protocol's weak encryption. Of the two main server codebases, Shrubbery Networks' has a fix that still has no CVE and Facebook's archived fork will get none, so the first job is finding out which daemon answers on port 49.

Publishers:news.risky.biz

Reality

Evidence45
Adoption
Insufficient
Hype gap+20
Incentives35
Confidence40