Hey
#FirmwareHacking fediverse, does anyone know of any other resources related to the
#Arcadyan #KVD21 home internet gateway that
#TMobile ships? Found some early exploratory work here
https://github.com/chainofexecution/Arcadyan-KVD21 but am wondering what else is out there 🤔🛜

GitHub - chainofexecution/Arcadyan-KVD21: Hardware Hacking diary for the T-Mobile 5G Home Internet Gateway (The KVD21 from Arcadyan, not the FastMile from Nokia)
Hardware Hacking diary for the T-Mobile 5G Home Internet Gateway (The KVD21 from Arcadyan, not the FastMile from Nokia) - GitHub - chainofexecution/Arcadyan-KVD21: Hardware Hacking diary for the T-...
GitHubFinally (!!!) I was able to publish these vulns I found on Arcadyan Routers (distributed by many ISPs in the world including Telmex/Infinitum). It ain't much but it is honest work.
https://gist.github.com/AsherDLL/03d0762b5a535e300f1121caebe333ce
#IoT #Routers #Arcadyan #vulnerabilities #vuln #vulnerability

Vulnerabilities found on Arcadyan Routers - Asher Davila L.
Vulnerabilities found on Arcadyan Routers - Asher Davila L. - Arcadyan Vulnerabilities.md
Gist
Hackers Exploiting New Auth Bypass Bug Affecting Millions of Arcadyan Routers
There have been reports of hackers exploiting a new Auth Bypass bug which affects millions of Arcadyan routers.
Attori di minacce non identificati stanno attivamente sfruttando una vulnerabilità critica di bypass dell'autenticazione per dirottare potenzialmente milioni di router domestici
#Arcadyan come parte del tentativo di cooptarli in una
#botnet variante
#Mirai utilizzata per eseguire attacchi
#DDoSDi Ravie
#Lakshmanan su
#TheHackerNews https://thehackernews.com/2021/08/hackers-exploiting-new-auth-bypass-bug.html
Hackers Exploiting New Auth Bypass Bug Affecting Millions of Arcadyan Routers
There have been reports of hackers exploiting a new Auth Bypass bug which affects millions of Arcadyan routers.
RT @[email protected]
Les #Livebox fibre (PRV3399) embarquant le firmware #Arcadyan sont affectées par le CVE-2021-20090 (auth bypass) comme des millions d'autres routeurs et box avec le même firmware : https://www.bleepingcomputer.com/news/security/actively-exploited-bug-bypasses-authentication-on-millions-of-routers/
On devrait donc voir prochainement une vague de #DDoS secouer les tuyaux.

Actively exploited bug bypasses authentication on millions of routers
Threat actors actively exploit a critical authentication bypass vulnerability impacting home routers with Arcadyan firmware to take them over and deploy Mirai botnet malicious payloads.
Haben #
o2 & #
Vodafone schon #
Router Probleme dementiert? Wie #
Telekom kaufen sie OEM-Router bei #
Arcadyan.