A number of D-Link and TRENDnet devices provide web management through the use of two services; jjhttpd for serving web content, and ncc2 for executing CGI requests. Unfortunately, there are a few vulnerabilities that exist in the ncc2 service which can allow for an attacker on the local network -...

A number of WNDR series devices contain an embedded SOAP service for use with the NetGear Genie application. This service allows for viewing and setting of certain router parameters, such as: WLAN credentials and SSIDs. Connected clients. Guest WLAN credentials and SSIDs. Parental control settings. At first glance, this service...

I recently received a WNDR3700v4 for use with my cable connection. My first question regarding the device was whether it is possible to pop a shell on the underlying OpenWRT system without cracking open the case and connecting to a serial console. To start with, I grabbed a copy of the latest firmware from...

While organising to have some business cards printed for networking at an upcoming conference, I could not find anything which I thought were both professional and 'geeky enough'. As a result, I did what any self-respecting geek would do: Attempted to over-engineer a ‘solution’ to a trivial problem. This is...

As part of new project to monitor a few systems around the house I have been looking for a stable way to collect and transmit data to a central location as part of a sensor network. This project lead me to the RFM22B, after a recommendation from a colleague around...