By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
Viral Trending contentViral Trending content
  • Home
  • World News
  • Politics
  • Sports
  • Celebrity
  • Business
  • Crypto
  • Gaming News
  • Tech News
  • Travel
Reading: Cox fixed an API auth bypass exposing millions of modems to attacks
Notification Show More
Viral Trending contentViral Trending content
  • Home
  • Categories
    • World News
    • Politics
    • Sports
    • Celebrity
    • Business
    • Crypto
    • Tech News
    • Gaming News
    • Travel
  • Bookmarks
© 2024 All Rights reserved | Powered by Viraltrendingcontent
Viral Trending content > Blog > Tech News > Cox fixed an API auth bypass exposing millions of modems to attacks
Tech News

Cox fixed an API auth bypass exposing millions of modems to attacks

By admin 3 Min Read
Share
SHARE

​Cox Communications has fixed an authorization bypass vulnerability that enabled remote attackers to abuse exposed backend APIs to reset millions of Cox-supplied modems’ settings and steal customers’ sensitive personal information.

Cox is the largest private broadband company in the U.S., providing internet, television, and phone services over fiber-powered networks to almost seven million homes and businesses across more than 30 states.

Bug bounty hunter Sam Curry discovered the security flaw and found that successful exploitation gave threat actors a similar set of permissions as ISP tech support.

The attackers could’ve used this access to exploit any of the millions of Cox devices accessible through the vulnerable Cox APIs, overwriting configuration settings and executing commands on the device.

For example, by exploiting this authentication bypass vulnerability, malicious actors can look for a Cox customer using their name, phone number, email address, or account number via the exposed APIs.

They can then steal their personally identifiable information (PII), including MAC addresses, email, phone numbers, and addresses.

The attackers can also collect connected devices’ Wi-Fi passwords and other information by querying the hardware MAC address stolen in the previous attack stage. Subsequently, they can execute unauthorized commands, modify device settings, and gain control over the victim’s accounts.

“This series of vulnerabilities demonstrated a way in which a fully external attacker with no prerequisites could’ve executed commands and modified the settings of millions of modems, accessed any business customer’s PII, and gained essentially the same permissions of an ISP support team,” Curry said.

“There were over 700 exposed APIs with many giving administrative functionality (e.g. querying the connected devices of a modem). Each API suffered from the same permission issues where replaying HTTP requests repeatedly would allow an attacker to run unauthorized commands.”

The company took down the exposed API calls within six hours of Curry’s report on March 3 and patched the vulnerability the next day.

As part of a follow-up security review, Cox also investigated whether this attack vector had ever been exploited before being reported but said it found no evidence of previous abuse attempts.

You Might Also Like

What Is a Preamp, and Do I Really Need One?

Your guide to complete visibility

How do you dispose of old batteries? Derry Cronin, Business Development Director of EHS International

CSA Issues Alert on Critical SmarterMail Bug Allowing Remote Code Execution

Vodafone Foundation and Rethink Ireland announce recipients of €540,000 Fund to Boost Digital Literacy for Older Adults

TAGGED: API, Bypass, Cox Communications, Modem, Vulnerability
Share This Article
Facebook Twitter Copy Link
Previous Article A First-Party Xbox Game Will be Shadow Dropped on June 9 – Rumour
Next Article More WWDC 2024 Details Revealed (Video)
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

- Advertisement -
Ad image

Latest News

Idaho company recalls nearly 3,000 pounds of ground beef for E. coli risk
Business
What Is a Preamp, and Do I Really Need One?
Tech News
Your guide to complete visibility
Tech News
TRX price eyes gains amid $18M boost from Justin Sun
Crypto
Analyst Predicts When The Bitcoin Supercycle Will Actually Begin
Crypto
Fenerbahce in contact for AC Milan star Christopher Nkunku
Sports
How do you dispose of old batteries? Derry Cronin, Business Development Director of EHS International
Tech News

About Us

Welcome to Viraltrendingcontent, your go-to source for the latest updates on world news, politics, sports, celebrity, tech, travel, gaming, crypto news, and business news. We are dedicated to providing you with accurate, timely, and engaging content from around the globe.

Quick Links

  • Home
  • World News
  • Politics
  • Celebrity
  • Business
  • Home
  • World News
  • Politics
  • Sports
  • Celebrity
  • Business
  • Crypto
  • Gaming News
  • Tech News
  • Travel
  • Sports
  • Crypto
  • Tech News
  • Gaming News
  • Travel

Trending News

cageside seats

Unlocking the Ultimate WWE Experience: Cageside Seats News 2024

Idaho company recalls nearly 3,000 pounds of ground beef for E. coli risk

Investing £5 a day could help me build a second income of £329 a month!

cageside seats
Unlocking the Ultimate WWE Experience: Cageside Seats News 2024
May 22, 2024
Idaho company recalls nearly 3,000 pounds of ground beef for E. coli risk
December 30, 2025
Investing £5 a day could help me build a second income of £329 a month!
March 27, 2024
Brussels unveils plans for a European Degree but struggles to explain why
March 27, 2024
© 2024 All Rights reserved | Powered by Vraltrendingcontent
  • About Us
  • Contact US
  • Disclaimer
  • Privacy Policy
  • Terms of Service
Welcome Back!

Sign in to your account

Lost your password?