So if hackers break into the modem, the worst they can do is shut off your internet. And if you really cared about reliability of your internet, you'd have two connections anyway.
Really this is a non-issue.
So if hackers break into the modem, the worst they can do is shut off your internet. And if you really cared about reliability of your internet, you'd have two connections anyway.
Really this is a non-issue.
> Change default DNS server > Conduct remote man-in-the-middle attacks > Hot-swap code or even the entire firmware > Upload, flash, and upgrade firmware silently > Disable ISP firmware upgrade > Change every config file and settings > Get and Set SNMP OID values > Change all associated MAC Addresses > Change serial numbers > Be exploited in botnet
A simple change in DNS servers combined with man-in-the-middle attacks is enough to fool many people into entering CC details into rogue sites for example.
(Edit for typos!)
Would this matter if the devices on the network are all themselves configured to use other DNS servers?
No, if your modem gets owned, you are in a whole lot of trouble.
You become vulnerable for all sorts of MITM attacks. The attacker now also has access to your LAN, which is usually trusted by all devices on it.
Good points; these two issues are quite different.
You could stop the network-access problem by putting an extra router (a secure one) between the modem and your local network, but that wouldn't save you from MITM.
And all the pushback we get from people here that DoH/DoT is a bad thing.
I can imagine just a couple of more things about having complete control of the only internet gateway most of us have at home.
And even if the worst thing is shutting off peoples internet, I fail to see how, at this scale, it is not at least a tiny issue?