
researcher accidentally finds 0-day affecting his entire internet service provider
Source: YouTube · Low Level · published Jun 11, 2024 · 29:04
A security researcher discovered how his ISP modem was compromised and found a vulnerability allowing remote control of any modem on his ISP's network 0:00-0:19.
Key Takeaways:
• The researcher discovered his HTTP traffic was being intercepted and replayed by an unknown IP address, which was linked to malware campaigns 1:15-1:31 4:02-4:34
• After replacing his compromised Cox modem, the suspicious behavior stopped, confirming the modem was the source 6:18-6:26
• Years later, he discovered an authorization bypass in Cox's business portal API, exposing customer data including FBI field office information 15:57-18:07
• The vulnerability allowed full remote control of any device on Cox's network using just the MAC address, potentially affecting millions of devices 20:01-20:25
• He successfully demonstrated changing his device's SSID remotely, proving attackers could have the same access as ISP support teams 26:03-26:31
The researcher responsibly disclosed the vulnerability to Cox, who fixed it, but confirmed his original modem compromise was unrelated to the discovered API flaw 27:25-27:47.
Sources:
- 0:00-0:19 Introduction to modem hacking story
- 1:15-1:31 Discovery of intercepted HTTP traffic
- 4:02-4:34 IP address linked to malware campaigns
- 6:18-6:26 Behavior stopped after modem replacement
- 15:57-18:07(https://www.youtu
Generate CPE Credits
Generate a professional CPE document from this video's transcript.
Estimated credit: 0.5 CPE hours
Estimate uses the video runtime (1 hour ≈ 1 CPE, rounded to the nearest 0.5, minimum 0.5, maximum 2.0). The final amount can be lower after review, never higher.
Topic: Cybersecurity. Commonly maps to: Security and Risk Management, Security Operations. Exact CISSP domains are assigned during generation.
Free account. One generation at a time, with a daily limit.
CPEBuddy is independent and not affiliated with or endorsed by ISC2, ISACA, or any certification body. Exports are formatted for common CPE submissions; acceptance is at your certification body's discretion.
Transcript Preview
First 800 characters of the transcript
the amount of trust that we put into devices we use every day is absolutely insane in this video we're going to talk about a crazy story where a security researcher found a way that he could not only hack into his own modem but literally any modem that anybody used in his entire isp's network also if you're new here hi my name is the love learning I make videos about software security and cyber security so if you're new here or just want to hang out with me hit that sub button two years ago something very strange happened to me while I was working for my home network this guy was doing pen testing right and he had this blind xxc which is he's allowed to inject arbitrary XML and then use that to run command execution and for it to happen he had to have a different endpoint that he could poi…