[nsp-sec] Black Hat Amsterdam - BGP, MPLS attack tools released

jose nazario jose at arbor.net
Fri Apr 17 09:21:54 EDT 2009


http://www.theregister.co.uk/2009/04/16/internet_backbone_hacking/

Classic BlackHat presentation, laying out some tools etc.

> Some of the new tools attack a network data-forwarding technology known as
> MPLS, or multiprotocol label switching. Carriers such as Verizon, AT&T and
> Sprint use it to segregate one corporate customer's traffic from another's as
> it's shuttled from one geographic region to another. The tools make it trivial
> for anyone with access to the carrier's network to redirect that traffic or
> alter data on it.
> 
> The software works because MPLS has no mechanism for protecting the integrity
> of the headers that determine where a data packet should be delivered.

-- jose





More information about the nsp-security mailing list