Web Hack List

Top 10 winner

NAT Slipstreaming

samy kamkar - NAT Slipstreaming v2.0

A malicious web page measures the victim's MTU and internal IP, then pads an HTTP POST or a WebRTC TURN username so attacker-chosen bytes begin a fresh TCP segment or IP fragment, which the router's SIP or H.323 application level gateway reads as call signalling. The NAT then forwards arbitrary ports back to any host on the victim's network.

Record

Document
samy kamkar - NAT Slipstreaming v2.0
Researcher
Samy Kamkar
Published by
samy.pl
Topic
Other

In the archive

Related sources

Tags

This page is the archive's own catalogue record. The research is the work of Samy Kamkar, first published at the original source. Preserved copies are kept so the citation survives its host; this one was last captured on .