Author Topic: John McAfee claims 'every router in America has been compromised' by hackers and spies  (Read 1924 times)

0 Members and 1 Guest are viewing this topic.

Offline ABX

  • Hero Member
  • *****
  • Posts: 900
  • Words full of sound and fury, signifying nothing.
It is interesting that one of the few people who would know more than anyone else chooses to use his phone's hotspot versus wifi router. A much higher level of encryption.

Quote
Technology pioneer John McAfee believes that every home internet router in America is wide open to cyberattacks by criminal hackers and intelligence agencies. He makes the claim speaking after revelations from WikiLeaks that the Central Intelligence Agency (CIA) targets the devices.

"I personally never connect to any WiFi system. I use the LTE system on my phone, I know that sounds crazy, but that's the only way I can be secure. Because every router in America has been compromised," he told Russian state news channel RT this week (20 June)......

http://www.ibtimes.co.uk/john-mcafee-claims-every-router-america-has-been-compromised-by-hackers-spies-1627222



HonestJohn

  • Guest
Only if one doesn't change the administrator's password to gain access to the router's settings.

Or if one makes that password short or easy to guess.

BassWrangler

  • Guest
This asshat read the article about the Linksys firmware having an NSA backdoor in it, and he's capitalizing on that to try and sound like a big expert. In reality, he's just some drug-addled fool trying to remain relevant.

Offline ABX

  • Hero Member
  • *****
  • Posts: 900
  • Words full of sound and fury, signifying nothing.
This asshat read the article about the Linksys firmware having an NSA backdoor in it, and he's capitalizing on that to try and sound like a big expert. In reality, he's just some drug-addled fool trying to remain relevant.

That 'asshat' wrote the manual on network security and the first anti-virus software.

Offline EC

  • Shanghaied Editor
  • Hero Member
  • *****
  • Posts: 23,804
  • Gender: Male
  • Cats rule. Dogs drool.
Seems a sensible guy. Every router in America is compromised, so I, a tech guy with a lot of cutting edge tech guy contacts, am gonna depend on my phone full of Chinese firmware to connect to that self-same system in order to be "secure." 

I respect McAfee's work, but he's not exactly thought this through. *****rollingeyes*****
The universe doesn't hate you. Unless your name is Tsutomu Yamaguchi

Avatar courtesy of Oceander

I've got a website now: Smoke and Ink

Offline driftdiver

  • Hero Member
  • *****
  • Posts: 9,897
  • Gender: Male
  • I could eat it raw but why when I have fire
That 'asshat' wrote the manual on network security and the first anti-virus software.

25 years ago.  Today his product is bloatware and crap.
Fools mock, tongues wag, babies cry and goats bleat.

Online 240B

  • Lord of all things Orange!
  • TBR Advisory Committee
  • ***
  • Posts: 26,153
    • I try my best ...
Related - Midas Muffler CEO: Lawrence C. Day recently issued a warning that every muffler in America has been compromised.
You cannot "COEXIST" with people who want to kill you.
If they kill their own with no conscience, there is nothing to stop them from killing you.
Rational fear and anger at vicious murderous Islamic terrorists is the same as irrational antisemitism, according to the Leftists.

Offline Taxcontrol

  • Hero Member
  • *****
  • Posts: 651
  • Gender: Male
  • "Stupid should hurt" - Dad's wisdom
Only if one doesn't change the administrator's password to gain access to the router's settings.

Or if one makes that password short or easy to guess.

8 character wifi passwords can be cracked in under 8 hours.

Offline driftdiver

  • Hero Member
  • *****
  • Posts: 9,897
  • Gender: Male
  • I could eat it raw but why when I have fire
8 character wifi passwords can be cracked in under 8 hours.

New NIST recommendations on passwords.  Recommend phrases now.  The longer the better.
Fools mock, tongues wag, babies cry and goats bleat.

Offline Frank Cannon

  • Hero Member
  • *****
  • Posts: 26,097
  • Gender: Male
John McAfee claims 'every router in America has been compromised' by hackers and spies

He also claims he didn't kill his neighbor down in Belize.

HonestJohn

  • Guest
8 character wifi passwords can be cracked in under 8 hours.

I was thinking 32-character passwords. (even if it's a doubling of a 16-character password... just the fact that the password is so long makes it exponentially more difficult to crack)

BassWrangler

  • Guest
That 'asshat' wrote the manual on network security and the first anti-virus software.

He didn't write the manual on anything. He did write one of the first anti-virus scanners. Decades ago. Since then his use of home-cooked amphetamines have fried his brain.

@AbaraXas

Offline LateForLunch

  • GOTWALMA Get Out of the Way and Leave Me Alone! (Nods to Teebone)
  • Hero Member
  • *****
  • Posts: 1,349
He didn't write the manual on anything. He did write one of the first anti-virus scanners. Decades ago. Since then his use of home-cooked amphetamines have fried his brain.

@AbaraXas
Yeah,
I read the full article on the anti-virus and his life since selling the rights. I got the impression that a good deal of the success of that product was good luck and great marketing skills. The man himself got into snorting bath salts as I recall which was when things started to head south for him. 'Not sure I'd take much he says seriously unless corroborated by someone who only uses bath salts externally.
« Last Edit: June 26, 2017, 08:26:22 pm by LateForLunch »
GOTWALMA Get out of the way and leave me alone! (Nods to General Teebone)

Wingnut

  • Guest
Related - Midas Muffler CEO: Lawrence C. Day recently issued a warning that every muffler in America has been compromised.


http://www.youtube.com/watch?v=h542BUdACH4&ab_channel=robatsea2009
Put that in your tail pipe and smoke it.

Offline roamer_1

  • Hero Member
  • *****
  • Posts: 43,677
8 character wifi passwords can be cracked in under 8 hours.

I believe that to be a straight dictionary hack, performed in low case only, and not caps/lows/nums/chars... I believe it also requires knowing where the internal gateway is, which may not be standard (mine certainly isn't).

And even if so, who has it out for you so bad that they are willing to spend 8 hrs hacking your wifi? Only for you to discover the wayward name in your dhcp table and reset your passwords again?

meh. Routers are pretty bulletproof. Change the access password, change the IP range, change the password to something relatively safe, and you're golden... Unless you are wanted by the FBI or you pissed off your hacker ex.

Offline Taxcontrol

  • Hero Member
  • *****
  • Posts: 651
  • Gender: Male
  • "Stupid should hurt" - Dad's wisdom
New NIST recommendations on passwords.  Recommend phrases now.  The longer the better.

Yep, I work in cyber security and use pass phases like:

Ilovetampabay
Mywifeissexy
MarlinsFever

etc but also do the standard transforms:
E is replaced with 3
I or L is replaced with 1 or !
O is replaced with 0
8 replaced with &
and others

Offline Taxcontrol

  • Hero Member
  • *****
  • Posts: 651
  • Gender: Male
  • "Stupid should hurt" - Dad's wisdom
I believe that to be a straight dictionary hack, performed in low case only, and not caps/lows/nums/chars... I believe it also requires knowing where the internal gateway is, which may not be standard (mine certainly isn't).

And even if so, who has it out for you so bad that they are willing to spend 8 hrs hacking your wifi? Only for you to discover the wayward name in your dhcp table and reset your passwords again?

meh. Routers are pretty bulletproof. Change the access password, change the IP range, change the password to something relatively safe, and you're golden... Unless you are wanted by the FBI or you pissed off your hacker ex.

Sorry that is incorrect.  It is a full alphanumeric 95 character set.
8 hours is done by a machine and can be done overnight
So set up a laptop, start recording the wifi traffic, force a station or two to reconnect, and in 4 hours you will have the wifi hash recorded.  Go back to the laptop, extract the wifi hash, pass to a cracker box (some are dedicated hardware, some can be ordered from the cloud).  Crack the password over night and come back the next morning with the password and you are on the wifi network.

Trust me, that is a standard penetration testing practice.  That is one of the tests that my team performs for banks and S&Ls

Offline roamer_1

  • Hero Member
  • *****
  • Posts: 43,677
Trust me, that is a standard penetration testing practice.  That is one of the tests that my team performs for banks and S&Ls

then I stand corrected. But it still has no bearing upon joe six-pack. I am a tech and control many small networks, and I have never in my life seen a router hack that didn't initiate within the LAN, or by a vector initiated within the LAN.

Offline Weird Tolkienish Figure

  • Technical
  • *****
  • Posts: 18,161
Sorry that is incorrect.  It is a full alphanumeric 95 character set.
8 hours is done by a machine and can be done overnight
So set up a laptop, start recording the wifi traffic, force a station or two to reconnect, and in 4 hours you will have the wifi hash recorded.  Go back to the laptop, extract the wifi hash, pass to a cracker box (some are dedicated hardware, some can be ordered from the cloud).  Crack the password over night and come back the next morning with the password and you are on the wifi network.

Trust me, that is a standard penetration testing practice.  That is one of the tests that my team performs for banks and S&Ls

Wep or wpa? Wep is a joke.

There's an industry standard for wpa, maybe wpa-radius 2, that is considered enterprise secure.

Even if you connect to the network, inter computer traffic (client to client) is usually verboten. Restricting all login access ports from wifi is pretty trivial (iow allow only wired clients to log in to router).

And of course, all security is relative and everything is crackable.