YNOT
  • Home
  • Industry News
    • Adult Business News
    • Adult Novelty News
    • YNOT Magazine
    • EU News
    • Opinions
    • Picture Galleries
  • PR Wire
    • Adult Company News
    • Adult Retail News
    • Adult Talent News
    • Adult Videos News
  • Podcasts
  • Industry Guides
    • Adult Affiliate Guide
    • Affiliate Marketing for Beginners
    • Top Adult Traffic Networks
    • Top Adult PR Agents
    • Funding an Adult Business
  • Business Directory
    • View Categories
    • View Listings
    • Submit Listing
  • Newsletters
  • Industry Events
    • Events Calendar
    • YNOT Cam Awards | Hollywood
    • YNOT Awards | Prague
    • YNOT Cammunity
    • YNOT Summit
    • YNOT Reunion
  • Login with YNOT ID

Remote Hardware Sabotage? It’s Called Phlashing

Posted On 28 May 2008
By : admin

LONDON — Remote attacks that can damage a network’s hardware severely enough to render it useless no longer are the stuff of science fiction.Last week at the EUSecWest security conference, Rich Smith, head of research for offensive technologies and threats at HP Systems Security Lab, demonstrated a so-called phlashing attack, a sort of permanent denial-of-service attack (PDOS) that comprises hardware sabotage.

Unlike distributed denial-of-service attacks, which often are used to annoy or conceal other motives like malware insertion or phishing, PDOS attacks are designed to cause extensive, permanent damage and cost network owners money.

“We aren’t seeing the PDOS attack as a way to mask another attack, such as malware insertion, but [as] a logical and highly destructive extension of the DDOS criminal extortion tactics seen in use today,” Smith told DarkReading.com, a website that analyzes and reports about security vulnerabilities.

Although a PDOS attack of the type Smith demonstrated would result in costly hardware replacement for the victim, it would be much less expensive than a DDOS attack. DDOS attacks require investment from the attacker for the duration of the event, but PDOS attacks represent one-shot dynamite.

During the demonstration, Smith used a “fuzzing” tool he developed not only to detect vulnerabilities, but also as a proof-of-concept vehicle for launching attacks. The PhlashDance tool “fuzzes” the code within network-enabled systems’ firmware update protocol. Because firmware updates normally are set to install automatically, the protocols typically aren’t difficult to access — and disastrous results can ensue.

“Phlashing attacks can achieve the goal of disrupting service without ongoing expense to the attacker,” Smith said. “Once the firmware has been corrupted, no further action is required for the DOS condition to continue.”

Thankfully, Smith said he hasn’t seen any PDOS attacks “in the wild” yet. However, he recommended system administrators take steps to protect themselves.

“Unfortunately, there isn’t a magic bullet [to protect against PDOS attacks], but making sure the flash update mechanisms have authentication so as not just anyone can perform an update is a start,” he said. “Beyond this, flash update mechanisms need to be designed with malicious attacks in mind.”

  • google-share
Previous Story

From Superhero Playboy to Playboy Entrepreneur

Next Story

“Porn Addiction” at Core of Staunton Obscenity Case

Leave a Reply Cancel reply

You must be logged in to post a comment.

Sponsor

YNOT Shoot Me

YNOTShootMe.com has exclusive pics from adult industry business events. Check it out!

YNOT Directory

  • FriendFinder Network
    Dating Affiliate Programs
  • Revolution Force
    Dating Affiliate Programs
  • Twistbox
    Mobile Affiliate Programs
  • Premiere Listing

    YNOT Mail

    More Details

RECENT

POPULAR

COMMENTS

ChickPass Amateurs Drops Two "Try-A-Dick" Scenes with Karma Blay

Posted On 06 Jun 2025

Parker Savage Makes His See Him Fuck Debut

Posted On 06 Jun 2025

Erika Icon Scores June Cover of ASN Mag & Feature

Posted On 06 Jun 2025

Vanessa, Meet Vivid

Posted On 29 Sep 2014
Laila Mickelwaite and Exodus Cry

Laila Mickelwaite, Exodus Cry and their Crusade Against Porn

Posted On 03 May 2021

Sex Toy Collective Dildo Sculptor

Posted On 19 Mar 2019

Find a good sex toy is now a problem,...

Posted On 18 Mar 2024

Thanks to the variety of sex toys, I can...

Posted On 02 Feb 2024

I understand the concerns about...

Posted On 05 Jan 2024

Sponsor

Sitemap
We use cookies to ensure that we give you the best experience on our website. If you continue to use this site we will assume that you are happy with it.OkPrivacy Policy