Skip to content

bentoboxinfosec

many parts make the whole

  • Home
  • Blog
  • CTF Cheat Sheet
  • About
  • Home
  • 2024
  • May
  • 8
  • NOVEL VPN ATTACK FORCES TRAFFIC OUTSIDE OF ENCRYPTED TUNNEL

NOVEL VPN ATTACK FORCES TRAFFIC OUTSIDE OF ENCRYPTED TUNNEL

Posted on May 8, 2024September 19, 2024 By topbento
News, Vulnerability

A novel VPN attack being called TunnelVision is able to force encrypted VPN traffic to route outside of the secure tunnel, potentially allowing a bad actor to intercept communication thought to be encrypted and secure. According to researchers the vulnerability may have existed since as early as 2002. The attack does not appear to effect Linux or Android devices. The attack requires a user to be connected to hostile network, it works by manipulating the DHCP server to override the default routing rules that send VPN traffic through a local IP and instead instructs the victim to route the traffic to the DHCP server itself instead. The attack was discovered by researchers at Leviathan Security who were able to route some or all of the VPN traffic outside of the encrypted tunnel.

More information on the attack and detailed writeup is available below!

https://www.leviathansecurity.com/blog/tunnelvision

https://arstechnica.com/security/2024/05/novel-attack-against-virtually-all-vpn-apps-neuters-their-entire-purpose

https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-3661

https://nvd.nist.gov/vuln/detail/CVE-2024-3661

Tags: CVE-2024-3661 cybersecurity news information security news vulnerability

Post navigation

❮ Previous Post: MARRIOTT ADMITS IT FALSELY CLAIMED IT WAS USING ENCRYPTION
Next Post: BREACH AT Dell LEADS TO DATA OF 50 MILLION CUSTOMERS ❯

You may also like

Cloud
AWS Log4Shell PATCH VULNERABLE TO CONTAINER ESCAPE AND PRIV ESCALATION
April 19, 2022
News
ADBLOCK PLUS – ARBITRARY CODE EXECUTION
April 17, 2019
News
ZERO-DAY ATTACK EFFECTING macOS SYSTEMS
November 20, 2024
News
REMOTE CODE EXECUTION BY ASKING NICELY – InjectGPT
March 25, 2023

Recent Posts

  • Salt Typhoon THREAT ACTORS SPOTTED ON US GOVT NETWORKS BEFORE TELCOS
  • Charter and Windstream ADDED TO LIST OF TELCO PROVIDERS COMPROMISED BY Salt Typhoon
  • Cisco CONFIRMS AUTHENTICITY OF 4.45 GB DATA BREACH
  • NINTH TELECOM COMPANY ADDED TO LIST OF Salt Typhoon TARGETS
  • McDonald’s API EXPLOITED FOR ONE CENT DELIVERIES

Recent Comments

No comments to show.

Archives

  • January 2025
  • December 2024
  • November 2024
  • October 2024
  • May 2024
  • April 2024
  • March 2024
  • September 2023
  • August 2023
  • May 2023
  • April 2023
  • March 2023
  • February 2023
  • January 2023
  • December 2022
  • November 2022
  • August 2022
  • July 2022
  • May 2022
  • April 2022
  • March 2022
  • January 2022
  • December 2021
  • November 2021
  • September 2021
  • August 2021
  • July 2021
  • January 2021
  • December 2020
  • August 2020
  • May 2020
  • March 2020
  • February 2020
  • October 2019
  • June 2019
  • April 2019

Categories

  • Breach
  • Cloud
  • Conferences
  • Hardware Hacking
  • Malware
  • News
  • Ransomware
  • Tools
  • Tutorial
  • Uncategorized
  • Vulnerability
  • Walkthough
  • Home
  • Blog
  • CTF Cheat Sheet
  • About
  • Twitter
  • Github
  • YouTube

Copyright © 2025 bentoboxinfosec.

Theme: Oceanly News Dark by ScriptsTown