From mboxrd@z Thu Jan 1 00:00:00 1970 From: "Mark E. Donaldson" Subject: RE: Completely Bypassing a Firewall?! Date: Wed, 25 Jan 2006 19:48:39 -0800 Message-ID: <007501c6222b$64a6a9e0$0300a8c0@bandwidthco.com> References: <1138198038.16454.73.camel@localhost.localdomain> Reply-To: markee@bandwidthco.com Mime-Version: 1.0 Content-Transfer-Encoding: 7bit Return-path: In-Reply-To: <1138198038.16454.73.camel@localhost.localdomain> List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Sender: netfilter-bounces@lists.netfilter.org Errors-To: netfilter-bounces@lists.netfilter.org Content-Type: text/plain; charset="us-ascii" To: 'Jason Noble' , netfilter@lists.netfilter.org Yes it is possible. Hack the root password on the box, rewrite the ruleset, and then load the ruleset. But ya know, I think that possibility has always existed. ########################################## This is coming from the home and office of: Mark E. Donaldson Bandwidthco Computer Security markee@bandwidthco.com http://www.bandwidthco.com/ Copyright C 1999 Bandwidthco.com. All rights reserved. 4500 0028 a66b 4000 8006 d307 c0a8 000a c0a8 0002 0871 0bc3 572b 25f7 ca7d 1b60 5010 f64c c0f6 0000 0000 0000 0000 ########################################## CCNA, OCP, GSEC, GCFW, GCIH, GCIA, GCUX, GCFA, X-Ways (WinHex) Forensics Certified ########################################## Hacking is the process of influencing a computer system in such a way that it performs an action that is useful to you. ########################################## .~. /V\ /( )\ ^^-^^ -----Original Message----- From: netfilter-bounces@lists.netfilter.org [mailto:netfilter-bounces@lists.netfilter.org] On Behalf Of Jason Noble Sent: Wednesday, January 25, 2006 6:07 AM To: netfilter@lists.netfilter.org Subject: Completely Bypassing a Firewall?! We just heard a rumor about our rival company, that they have developed a "system" that can completely bypass a properly-configured/locked-down firewall (netfilter or any other). Is this truly possible? with only external access and no software that's already been planted inside the firewall? ######################################################## This message has been scanned for viruses and dangerous content by MailScanner, and is believed to be clean. postmaster@bandwidthco.com MailScanner at Bandwidthco Computer Security is for your absolute protection. ######################################################## ######################################################## This message has been scanned for viruses and dangerous content by MailScanner, and is believed to be clean. postmaster@bandwidthco.com MailScanner at Bandwidthco Computer Security is for your absolute protection. ########################################################