Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Is it safe enough to buy a separate router and put the ISP modem on the "internet" side of it?


It depends. The tr069 managed devices are typically router wifi combo type devices. If you can get a dumb modem that would would likely remove any tr069 vulnerabilities.

The firmware on whatever is doing docsis is going to be updatable by the ISP generally.

Two different mechanisms. The tr069 management and snmp triggered firmware upgrade


I think the attack described in the article is still possible in this setting, where the modem is in the middle of your unencrypted http traffic. This is true of any equipment belonging to the isp

However, I would assume no unencrypted traffic is safe anyway, and the modem would indeed not have access to your internal network.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: