NA

CVE-2024-3661

Published: 06/05/2024 Updated: 08/05/2024

Vulnerability Summary

DHCP can add routes to a client’s routing table via the classless static route option (121). VPN-based security solutions that rely on routes to redirect traffic can be forced to leak traffic over the physical interface. An attacker on the same local network can read, disrupt, or possibly modify network traffic that was expected to be protected by the VPN.

Vulnerability Trend

Vendor Advisories

Github Repositories

News API is a simple tool for scraping news data. It returns the news title, description, and more.. This is a .NET API Client for the News API.

News API News API is a simple tool for scraping news data It returns the news title, description, and more This is a NET Wrapper for the News API Installation Using the NET CLI: dotnet add package APIVerveAPINews Using the Package Manager: nuget install APIVerveAPINews Using the Package

A network technique that decloaks a VPN users traffic on a local network without disconnecting them from a VPN.

TunnelVision: Decloaking Routing-Based VPNs CVE-2024-3661 TunnelVision is a local network VPN leaking technique that allows an attacker to read, drop, and sometimes modify VPN traffic from a targets on the local network This technique does not activate kill-switches and does not have a full fix for every major operating system We are using the built-in and widely supported fe

News API is a simple tool for scraping news data. It returns the news title, description, and more.

News API News API is a simple tool for scraping news data It returns the news title, description, and more This is a Javascript Wrapper for the News API Installation npm install @apiverve/news --save Configuration Before using the news API client, you have to setup your account and obtain your API Key You can get it by signing up a

Recent Articles

New attack leaks VPN traffic using rogue DHCP servers
BleepingComputer • Bill Toulas • 07 May 2024

New attack leaks VPN traffic using rogue DHCP servers By Bill Toulas May 7, 2024 02:46 PM 0 A new attack dubbed "TunnelVision" can route traffic outside a VPN's encryption tunnel, allowing attackers to snoop on unencrypted traffic while maintaining the appearance of a secure VPN connection. The method, described in detail in a report by Leviathan Security, relies on the abuse of Dynamic Host Configuration Protocol's (DHCP) option 121, which permits the configuration of classless static routes on...

Watch out for rogue DHCP servers decloaking your VPN connections
The Register

Topics Security Off-Prem On-Prem Software Offbeat Special Features Vendor Voice Vendor Voice Resources Avoid traffic-redirecting snoops who have TunnelVision

A newly discovered vulnerability undermines countless VPN clients in that their traffic can be quietly routed away from their encrypted tunnels and intercepted by snoops on the network. Dubbed TunnelVision by the eggheads at Leviathan Security Group who uncovered and documented it, the technique (CVE-2024-3661) can result in a VPN user believing their connection is properly secured, and being routed through an encrypted tunnel as usual, while an attacker on their network has instead redirected t...