By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
Viral Trending contentViral Trending content
  • Home
  • World News
  • Politics
  • Sports
  • Celebrity
  • Business
  • Crypto
  • Gaming News
  • Tech News
  • Travel
Reading: Cox fixed an API auth bypass exposing millions of modems to attacks
Notification Show More
Viral Trending contentViral Trending content
  • Home
  • Categories
    • World News
    • Politics
    • Sports
    • Celebrity
    • Business
    • Crypto
    • Tech News
    • Gaming News
    • Travel
  • Bookmarks
© 2024 All Rights reserved | Powered by Viraltrendingcontent
Viral Trending content > Blog > Tech News > Cox fixed an API auth bypass exposing millions of modems to attacks
Tech News

Cox fixed an API auth bypass exposing millions of modems to attacks

By admin 3 Min Read
Share
SHARE

​Cox Communications has fixed an authorization bypass vulnerability that enabled remote attackers to abuse exposed backend APIs to reset millions of Cox-supplied modems’ settings and steal customers’ sensitive personal information.

Cox is the largest private broadband company in the U.S., providing internet, television, and phone services over fiber-powered networks to almost seven million homes and businesses across more than 30 states.

Bug bounty hunter Sam Curry discovered the security flaw and found that successful exploitation gave threat actors a similar set of permissions as ISP tech support.

The attackers could’ve used this access to exploit any of the millions of Cox devices accessible through the vulnerable Cox APIs, overwriting configuration settings and executing commands on the device.

For example, by exploiting this authentication bypass vulnerability, malicious actors can look for a Cox customer using their name, phone number, email address, or account number via the exposed APIs.

They can then steal their personally identifiable information (PII), including MAC addresses, email, phone numbers, and addresses.

The attackers can also collect connected devices’ Wi-Fi passwords and other information by querying the hardware MAC address stolen in the previous attack stage. Subsequently, they can execute unauthorized commands, modify device settings, and gain control over the victim’s accounts.

“This series of vulnerabilities demonstrated a way in which a fully external attacker with no prerequisites could’ve executed commands and modified the settings of millions of modems, accessed any business customer’s PII, and gained essentially the same permissions of an ISP support team,” Curry said.

“There were over 700 exposed APIs with many giving administrative functionality (e.g. querying the connected devices of a modem). Each API suffered from the same permission issues where replaying HTTP requests repeatedly would allow an attacker to run unauthorized commands.”

The company took down the exposed API calls within six hours of Curry’s report on March 3 and patched the vulnerability the next day.

As part of a follow-up security review, Cox also investigated whether this attack vector had ever been exploited before being reported but said it found no evidence of previous abuse attempts.

You Might Also Like

The Spying Apps You Should Uninstall Now

AirPods Max 2: H2 Upgrades, 1.5x ANC, and $549 Pricing Details

Chrome 0-Days, Router Botnets, AWS Breach, Rogue AI Agents & More

Stopping Cyberattacks Before They Start: Zero Trust Approach

COBOL Is the Asbestos of Programming Languages

TAGGED: API, Bypass, Cox Communications, Modem, Vulnerability
Share This Article
Facebook Twitter Copy Link
Previous Article A First-Party Xbox Game Will be Shadow Dropped on June 9 – Rumour
Next Article More WWDC 2024 Details Revealed (Video)
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

- Advertisement -
Ad image

Latest News

Paytm shares jumps 4% after rival PhonePe halts IPO plans
Business
Sean Penn’s Kids: Meet His 2 Children With Robin Wright
Celebrity
Battlefield 6 Gets New Map, Weapons, REDSEC Gets New Point of Interest in Season 2: Nightfall Update
Gaming News
Bitcoin nears $75K as trader says BTC price squeeze 'changes nothing'
Crypto
Two Steam games release with the same name and avoid disaster by 'acting like human beings'
Gaming News
The Spying Apps You Should Uninstall Now
Tech News
AirPods Max 2: H2 Upgrades, 1.5x ANC, and $549 Pricing Details
Tech News

About Us

Welcome to Viraltrendingcontent, your go-to source for the latest updates on world news, politics, sports, celebrity, tech, travel, gaming, crypto news, and business news. We are dedicated to providing you with accurate, timely, and engaging content from around the globe.

Quick Links

  • Home
  • World News
  • Politics
  • Celebrity
  • Business
  • Home
  • World News
  • Politics
  • Sports
  • Celebrity
  • Business
  • Crypto
  • Gaming News
  • Tech News
  • Travel
  • Sports
  • Crypto
  • Tech News
  • Gaming News
  • Travel

Trending News

cageside seats

Unlocking the Ultimate WWE Experience: Cageside Seats News 2024

Paytm shares jumps 4% after rival PhonePe halts IPO plans

Investing £5 a day could help me build a second income of £329 a month!

cageside seats
Unlocking the Ultimate WWE Experience: Cageside Seats News 2024
May 22, 2024
Paytm shares jumps 4% after rival PhonePe halts IPO plans
March 16, 2026
Investing £5 a day could help me build a second income of £329 a month!
March 27, 2024
Brussels unveils plans for a European Degree but struggles to explain why
March 27, 2024
© 2024 All Rights reserved | Powered by Vraltrendingcontent
  • About Us
  • Contact US
  • Disclaimer
  • Privacy Policy
  • Terms of Service
Welcome Back!

Sign in to your account

Lost your password?