P1 Networks Modem Backdoor

Discussion in 'Scripts & Commands' started by Mr. Penguin, 20 Oct 2012.

  1. Mr. Penguin

    Mr. Penguin Administrator
    Staff Member Admin Moderator VIP

    Joined:
    18 May 2012
    Messages:
    3,087
    Likes Received:
    1,187
    Trophy Points:
    351
    P1 Networks is the first company to launch commercial WiMAX services in Malaysia back in August 2008. Subscribers connect to the base station via a supplied modem. By default, the modem has its port 80 open to allow owner to access its admin interface from a web browser. Currently, the default configuration also allows anyone to access port 80 on the modem from the Internet.

    Additionally, most if not all the modems appear to use the same default login with "admin" as the username and "admin123" as the password. The range of IP address space for P1 Networks is 180.72.0.0 - 180.75.255.255 (max. 262144 hosts). By probing port 80 on these IP addresses using nmap, we can easily find and login into most of the active modems using the default login described earlier. 16048 active P1 modems (most using default login) as of October 13, 2012:

    Download
    http://pastebin.com/pkuNfSJF
     
    • Like Like x 2
  2. estimacamry

    estimacamry Tracker
    VIP

    Joined:
    3 Aug 2012
    Messages:
    552
    Likes Received:
    131
    Trophy Points:
    91
    By default P1 Wimax modem WiFi WEP key is easy to guess. Example if the ssid is 0FDC87, minus out the front "0" and add in 1FFB0. In another words, FDC871FFB0 is the default WEP key.
     
  3. FareezIzwar

    FareezIzwar Active Member

    Joined:
    30 May 2012
    Messages:
    22
    Likes Received:
    2
    Trophy Points:
    33
    if security WPA 0FDC87, what is the key .?
     
  4. estimacamry

    estimacamry Tracker
    VIP

    Joined:
    3 Aug 2012
    Messages:
    552
    Likes Received:
    131
    Trophy Points:
    91
    0FDC87 + 1FFD0 >> FDC871FFD0 (default wep key) unless changed during setup.
    By default its WEP, WPA means being changed so tough luck.
     
  5. firesheep

    firesheep Well-Known Member
    Donator I

    Joined:
    10 Jul 2012
    Messages:
    53
    Likes Received:
    8
    Trophy Points:
    120
    thank share i will try
     
Loading...
  • About Us

    We are a community mixed with professionals and beginners with an interest in wireless security, auditing and pentesting. Feel free to check out and upload resources.


    You can also find us on: Twitter and Facebook

  • Donate to Us

    Did you find our forums useful? Feel free to donate Bitcoin to us using the form below. Those who donate the equivlent of $10 USD or more will be upgraded to VIP membership. Don't have Bitcoin? Use your credit card to GO VIP here. Don't want to fork out some coin? There are other ways to GO VIP. Bitcoin: 1LMTGSoTyJWXuy2mQkHfgMzD7ez74x1Z8K