what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New

Port Scanning /0 Using Insecure Embedded Devices

Port Scanning /0 Using Insecure Embedded Devices
Posted Mar 18, 2013
Authored by Internet Census

Internet Census 2012 - Port scanning /0 using insecure embedded devices. This write up discusses the Carna Botnet that was created and leveraged to scan all IPv4 addresses. It made use of 420 thousand insecure devices to complete the effort.

tags | paper
SHA-256 | 6f8dddcbe67cdf06b94ff3bbc4cfb0155b758391e222e39ae7b631a097f931ee

Port Scanning /0 Using Insecure Embedded Devices

Change Mirror Download
---------------------  Internet Census 2012  ---------------------
 
-------- Port scanning /0 using insecure embedded devices --------
 
-------------------------  Carna Botnet  -------------------------
 
 
While playing around with the Nmap Scripting Engine we discovered an amazing 
number of open embedded devices on the Internet. Many of them are based on 
Linux and allow login to standard BusyBox with empty or default credentials. 
From March to December 2012 we used ~420 Thousand insecure embedded devices 
as a distributed port scanner to scan all IPv4 addresses. 
These scans include service probes for the most common ports, ICMP ping, 
reverse DNS and SYN scans. We analyzed some of the data to get an estimation 
of the IP address usage. 
 
All data gathered during our research is released into the public domain for 
further study. The full 9 TB dataset has been compressed to 565GB using ZPAQ 
and is available via BitTorrent. The dataset contains:
- 52 billion ICMP ping probes
- 10.5 billion reverse DNS records
- 180 billion service probe records
- 2.8 billion sync scan records for 660 million IPs with 71 billion ports tested
- 80 million TCP/IP fingerprints
- 75 million IP ID sequence records
- 68 million traceroute records
   
      
This project is, to our knowledge, the largest and most comprehensive 
IPv4 census ever. With a growing number of IPv6 hosts on the Internet, 2012 
may have been the last time a census like this was possible. A full documention, 
including statistics and images, can be found on the project page.
 
We hope other researchers will find the data we have collected useful and that 
this publication will help raise some awareness that, while everybody is talking
about high class exploits and cyberwar, four simple stupid default telnet 
passwords can give you access to hundreds of thousands of consumer as well as 
tens of thousands of industrial devices all over the world.
 
No devices were harmed during this experiment and our botnet has now ceased its 
activity.


 
Project Page:
 http://internetcensus2012.bitbucket.org/
 http://internetcensus2012.github.com/InternetCensus2012/
 http://census2012.sourceforge.net/

Torrent MAGNET LINK:
 magnet:?xt=urn:btih:7e138693170629fa7835d52798be18ab2fb847fe&dn=InternetCensus2012&tr=udp%3a%2f%2ftracker.openbittorrent.com%3a80% 2fannounce&tr=udp%3a%2f%2ftracker.ccc.de%3a80%2fannounce&tr=udp%3a%2f%2ftracker.publicbt.com%3a80%2fannounce



Login or Register to add favorites

File Archive:

April 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Apr 1st
    10 Files
  • 2
    Apr 2nd
    26 Files
  • 3
    Apr 3rd
    40 Files
  • 4
    Apr 4th
    6 Files
  • 5
    Apr 5th
    26 Files
  • 6
    Apr 6th
    0 Files
  • 7
    Apr 7th
    0 Files
  • 8
    Apr 8th
    22 Files
  • 9
    Apr 9th
    14 Files
  • 10
    Apr 10th
    10 Files
  • 11
    Apr 11th
    13 Files
  • 12
    Apr 12th
    14 Files
  • 13
    Apr 13th
    0 Files
  • 14
    Apr 14th
    0 Files
  • 15
    Apr 15th
    30 Files
  • 16
    Apr 16th
    10 Files
  • 17
    Apr 17th
    22 Files
  • 18
    Apr 18th
    45 Files
  • 19
    Apr 19th
    8 Files
  • 20
    Apr 20th
    0 Files
  • 21
    Apr 21st
    0 Files
  • 22
    Apr 22nd
    11 Files
  • 23
    Apr 23rd
    68 Files
  • 24
    Apr 24th
    23 Files
  • 25
    Apr 25th
    0 Files
  • 26
    Apr 26th
    0 Files
  • 27
    Apr 27th
    0 Files
  • 28
    Apr 28th
    0 Files
  • 29
    Apr 29th
    0 Files
  • 30
    Apr 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close