|
2011-06-15
, 13:42
|
Posts: 1,746 |
Thanked: 1,832 times |
Joined on Dec 2010
|
#2
|
|
2011-06-15
, 13:51
|
|
Posts: 302 |
Thanked: 193 times |
Joined on Oct 2008
@ England
|
#3
|
The Following 7 Users Say Thank You to Captwheeto For This Useful Post: | ||
|
2011-06-15
, 13:59
|
|
Posts: 4,365 |
Thanked: 2,467 times |
Joined on Jan 2010
@ Australia Mate
|
#4
|
|
2011-06-15
, 14:01
|
Posts: 135 |
Thanked: 75 times |
Joined on Apr 2011
@ Buenos Aires, Argentina
|
#5
|
Turn off SSH if you're not going to use it. Also traffic is being sniffed more than a school girl in Japan. Don't log on to anything, general browsing should be fine as long as nobody does a redirect and exploits you from there.
|
2011-06-15
, 14:03
|
Posts: 135 |
Thanked: 75 times |
Joined on Apr 2011
@ Buenos Aires, Argentina
|
#6
|
vi /etc/ssh/sshd_config
PermitRootLogin no
The Following 8 Users Say Thank You to sr00t For This Useful Post: | ||
|
2011-06-15
, 14:11
|
Posts: 650 |
Thanked: 497 times |
Joined on Oct 2008
@ Ghent, Belgium
|
#8
|
The Following 9 Users Say Thank You to petur For This Useful Post: | ||
|
2011-06-15
, 14:18
|
Posts: 135 |
Thanked: 75 times |
Joined on Apr 2011
@ Buenos Aires, Argentina
|
#9
|
What about the SSH switch found in the repos? How does that thing turn SSH off?
|
2011-06-15
, 14:27
|
Posts: 235 |
Thanked: 86 times |
Joined on Dec 2010
|
#10
|
The Following 4 Users Say Thank You to figaro For This Useful Post: | ||
First I want to tell you that I'll assist to this Security Conference and I'll go with my N900.
Let's suppose it has a very difficult root password (uncrackable under normal conditions) and the only service available as an open port would be SSH. Bluetooth will be shut down and 3G too.
Would connecting to WiFi in that conference be dangerous? How do you think the attacker could penetrate N900 (without having physical access to it, of course).
Should I let SSH port be open? If I close it, would another service still running be used as an exploitable gate to gain shell access?
As setup, I have latest CSSU with latest Kernel-Power, and latest Busybox (Busybox-Power).
TL;DR :
I wanna know if N900 is vulnerable to attacks as a target, and share experiences about vulnerabilies found in Maemo 5 and how to prevent them.
Hoping I didn't make silly questions that may irritate you (I'm not an expert, for sure, but I'm not a lammo either), I wait for your answers. Thanks a lot, guys.
Ok, let's compile and summarize some nice advices I've got so far:
Last edited by sr00t; 2011-06-15 at 18:38.