This discussion topic is read only
This discussion topic has been answered
Discussion topic: Sky Q Hub security update
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Printer Friendly Page
Message posted on 12 May 2021 02:20 PM
- Mark as New
- Bookmark
- Subscribe
- Subscribe to RSS Feed
- Highlight
- Report post
Hi
With the recent disclosure of new wi fi vulnerabilities, do we know when/if the sky q hub will be updated to receive this security patch?
Vulnerability here - https://www.fragattacks.com/
Best Answers
Message posted on 12 May 2021 06:27 PM
- Mark as New
- Bookmark
- Subscribe
- Subscribe to RSS Feed
- Highlight
- Report post
The Linux kernel is primarily in the whole OS type of system when it involves client-side/AP wifi vulnerabilities, not server or router and it's with certain wifi adapters. Also, the Sky router has a transparent DNS, so you cannot hijack DNS. I could go on but have read the whole advisory and it doesn't apply to Sky's routers that get firmware patched often.
Zen internet on FTTP (900Mbps down, 100Mbps up). SAT> IP (Apple 4K 2nd gen TV to LG C1 OLED UHD TV/Dolby Atmos Denon AVR, DacMagic Plus for Hi-Res audio), hosting own blog/forum (cluster), OPNsense & Zenarmor L4/L7 NGFW & DPI IDS/IPS, Asus ET12 Pro Tri-Band wifi, Linux, Gamer: Xbox Series X/i7 laptop, round-robin DNS over HTTPS, non-proprietary VoIP HD AMR-WB (G.722.2) and more... Beta tester Apple iOS/watchOS/tvOS/iPadOS/macOS.
This discussion has been locked
Sorry, you can't reply to this discussion as it's been locked by our Community Managers.
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Printer Friendly Page
All Replies
Message posted on 12 May 2021 05:47 PM
- Mark as New
- Bookmark
- Subscribe
- Subscribe to RSS Feed
- Highlight
- Report post
Re: Sky Q Hub security update
The security vulnerabilities primarily impact client devices and most of these have been patched now, Linux systems which the Sky router is written around are not impacted.
Zen internet on FTTP (900Mbps down, 100Mbps up). SAT> IP (Apple 4K 2nd gen TV to LG C1 OLED UHD TV/Dolby Atmos Denon AVR, DacMagic Plus for Hi-Res audio), hosting own blog/forum (cluster), OPNsense & Zenarmor L4/L7 NGFW & DPI IDS/IPS, Asus ET12 Pro Tri-Band wifi, Linux, Gamer: Xbox Series X/i7 laptop, round-robin DNS over HTTPS, non-proprietary VoIP HD AMR-WB (G.722.2) and more... Beta tester Apple iOS/watchOS/tvOS/iPadOS/macOS.
Message posted on 12 May 2021 06:16 PM
- Mark as New
- Bookmark
- Subscribe
- Subscribe to RSS Feed
- Highlight
- Report post
Re: Sky Q Hub security update
https://www.theregister.com/2021/05/12/krack_hack_wifi/
Zen internet on FTTP (900Mbps down, 100Mbps up). SAT> IP (Apple 4K 2nd gen TV to LG C1 OLED UHD TV/Dolby Atmos Denon AVR, DacMagic Plus for Hi-Res audio), hosting own blog/forum (cluster), OPNsense & Zenarmor L4/L7 NGFW & DPI IDS/IPS, Asus ET12 Pro Tri-Band wifi, Linux, Gamer: Xbox Series X/i7 laptop, round-robin DNS over HTTPS, non-proprietary VoIP HD AMR-WB (G.722.2) and more... Beta tester Apple iOS/watchOS/tvOS/iPadOS/macOS.
Message posted on 12 May 2021 06:19 PM
- Mark as New
- Bookmark
- Subscribe
- Subscribe to RSS Feed
- Highlight
- Report post
Re: Sky Q Hub security update
Thanks, I hadn't seen that, I was wondering if they would have been applied to the ISP provided router yet as they tend to be notoriously slow at patching (if at all!)
Message posted on 12 May 2021 06:22 PM
- Mark as New
- Bookmark
- Subscribe
- Subscribe to RSS Feed
- Highlight
- Report post
Re: Sky Q Hub security update
Just reading in more detail, it looks like those were patches to the Linux kernel but that doesn't mean they have yet made it downstream to routers
Message posted on 12 May 2021 06:27 PM
- Mark as New
- Bookmark
- Subscribe
- Subscribe to RSS Feed
- Highlight
- Report post
The Linux kernel is primarily in the whole OS type of system when it involves client-side/AP wifi vulnerabilities, not server or router and it's with certain wifi adapters. Also, the Sky router has a transparent DNS, so you cannot hijack DNS. I could go on but have read the whole advisory and it doesn't apply to Sky's routers that get firmware patched often.
Zen internet on FTTP (900Mbps down, 100Mbps up). SAT> IP (Apple 4K 2nd gen TV to LG C1 OLED UHD TV/Dolby Atmos Denon AVR, DacMagic Plus for Hi-Res audio), hosting own blog/forum (cluster), OPNsense & Zenarmor L4/L7 NGFW & DPI IDS/IPS, Asus ET12 Pro Tri-Band wifi, Linux, Gamer: Xbox Series X/i7 laptop, round-robin DNS over HTTPS, non-proprietary VoIP HD AMR-WB (G.722.2) and more... Beta tester Apple iOS/watchOS/tvOS/iPadOS/macOS.
Message posted on 12 May 2021 06:28 PM
- Mark as New
- Bookmark
- Subscribe
- Subscribe to RSS Feed
- Highlight
- Report post
Re: Sky Q Hub security update
Thanks, as long as the hubs get frequent updates I'm happy as I'm sure they will get any patches soon.
Message posted on 12 May 2021 06:53 PM
- Mark as New
- Bookmark
- Subscribe
- Subscribe to RSS Feed
- Highlight
- Report post
Re: Sky Q Hub security update
https://www.fragattacks.com/#details
Because Sky routers use a DNS transparent proxy DNS cannot be poisoned, so it does not impact Sky routers drastically or more accurately it's mitigated!
Zen internet on FTTP (900Mbps down, 100Mbps up). SAT> IP (Apple 4K 2nd gen TV to LG C1 OLED UHD TV/Dolby Atmos Denon AVR, DacMagic Plus for Hi-Res audio), hosting own blog/forum (cluster), OPNsense & Zenarmor L4/L7 NGFW & DPI IDS/IPS, Asus ET12 Pro Tri-Band wifi, Linux, Gamer: Xbox Series X/i7 laptop, round-robin DNS over HTTPS, non-proprietary VoIP HD AMR-WB (G.722.2) and more... Beta tester Apple iOS/watchOS/tvOS/iPadOS/macOS.
This discussion has been locked
Sorry, you can't reply to this discussion as it's been locked by our Community Managers.
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Printer Friendly Page