* . *
  • About
  • Advertise
  • Privacy & Policy
  • Contact
Wednesday, March 25, 2026
Earth-News
  • Home
  • Business
  • Entertainment

    Lucas Ball Joins Forces with Twelve6 Entertainment in Thrilling New Partnership

    Fall River’s Day of Portugal announces dates, entertainment lineup for 2026 – Fall River Reporter

    Margaret Cho Opens Up About Comedy, Politics, and Life in Hollywood

    Bring Spring Freshness to Your Kitchen with Expert Chef Tips

    Community Unites to Shape the Future of Roanoke’s Berglund Center

    Uncover the Top 10 Most Played Songs from the ‘Love Story’ Soundtrack on Spotify

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology

    Datasea Launches First U.S. Commercial Acoustic Technology-Powered Wellness Care Robots, Paving the Way for Future Innovation

    Get in the Game: Spring Athletics Challenge at Rochester Institute of Technology

    How Prophetic Land Search Company is Revolutionizing Technology to Transform the Industry

    Is MACOM Technology Solutions (MTSI) the Next Big Opportunity After Its Recent Price Drop?

    Why Wall Street Insiders Are Racing to Buy This Fintech Stock

    Three Men Charged with Plotting to Smuggle US Artificial Intelligence Technology to China

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
  • Home
  • Business
  • Entertainment

    Lucas Ball Joins Forces with Twelve6 Entertainment in Thrilling New Partnership

    Fall River’s Day of Portugal announces dates, entertainment lineup for 2026 – Fall River Reporter

    Margaret Cho Opens Up About Comedy, Politics, and Life in Hollywood

    Bring Spring Freshness to Your Kitchen with Expert Chef Tips

    Community Unites to Shape the Future of Roanoke’s Berglund Center

    Uncover the Top 10 Most Played Songs from the ‘Love Story’ Soundtrack on Spotify

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology

    Datasea Launches First U.S. Commercial Acoustic Technology-Powered Wellness Care Robots, Paving the Way for Future Innovation

    Get in the Game: Spring Athletics Challenge at Rochester Institute of Technology

    How Prophetic Land Search Company is Revolutionizing Technology to Transform the Industry

    Is MACOM Technology Solutions (MTSI) the Next Big Opportunity After Its Recent Price Drop?

    Why Wall Street Insiders Are Racing to Buy This Fintech Stock

    Three Men Charged with Plotting to Smuggle US Artificial Intelligence Technology to China

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
Earth-News
No Result
View All Result
Home General

A “ridiculously weak“ password causes disaster for Spain’s No. 2 mobile carrier

January 5, 2024
in General
A “ridiculously weak“ password causes disaster for Spain’s No. 2 mobile carrier
Share on FacebookShare on Twitter

A “ridiculously weak“ password causes disaster for Spain’s No. 2 mobile carrier

Getty Images

Orange España, Spain’s second-biggest mobile operator, suffered a major outage on Wednesday after an unknown party obtained a “ridiculously weak” password and used it to access an account for managing the global routing table that controls which networks deliver the company’s Internet traffic, researchers said.

The hijacking began around 9:28 Coordinated Universal Time (about 2:28 Pacific time) when the party logged into Orange’s RIPE NCC account using the password “ripeadmin” (minus the quotation marks). The RIPE Network Coordination Center is one of five Regional Internet Registries, which are responsible for managing and allocating IP addresses to Internet service providers, telecommunication organizations, and companies that manage their own network infrastructure. RIPE serves 75 countries in Europe, the Middle East, and Central Asia.

“Things got ugly”

The password came to light after the party, using the moniker Snow, posted an image to social media that showed the orange.es email address associated with the RIPE account. RIPE said it’s working on ways to beef up account security.

Screenshot showing RIPE account, including the orange.es email address associated with it.

Enlarge / Screenshot showing RIPE account, including the orange.es email address associated with it.

Security firm Hudson Rock plugged the email address into a database it maintains to track credentials for sale in online bazaars. In a post, the security firm said the username and “ridiculously weak” password were harvested by information-stealing malware that had been installed on an Orange computer since September. The password was then made available for sale on an infostealer marketplace.

Partially redacted screenshot from Hudson Rock database showing the credentials for the Orange RIPE account.

Enlarge / Partially redacted screenshot from Hudson Rock database showing the credentials for the Orange RIPE account.

HJudson Rock

Researcher Kevin Beaumont said thousands of credentials protecting other RIPE accounts are also available in such marketplaces.

Once logged into Orange’s RIPE account, Snow made changes to the global routing table the mobile operator relies on to specify what backbone providers are authorized to carry its traffic to various parts of the world. These tables are managed using the Border Gateway Protocol (BGP), which connects one regional network to the rest of the Internet. Specifically, Snow added several new ROAs, short for Route Origin Authorizations. These entries allow “autonomous systems” such as Orange’s AS12479 to designate other autonomous systems or large chunks of IP addresses to deliver its traffic to various regions of the world.

In the initial stage, the changes had no meaningful effect because the ROAs Snow added announcing the IP addresses—93.117.88.0/22 and 93.117.88.0/21, and 149.74.0.0/16—already originated with Orange’s AS12479. A few minutes later, Snow added ROAs to five additional routes. All but one of them also originated with the Orange AS, and once again had no effect on traffic, according to a detailed writeup of the event by Doug Madory, a BGP expert at security and networking firm Kentik.

The creation of the ROA for 149.74.0.0/16 was the first act by Snow to create problems, because the maximum prefix length was set to 16, rendering any smaller routes using the address range invalid

“It invalidated any routes that are more specific (longer prefix length) than a 16,” Madory told Ars in an online interview. “So routes like 149.74.100.0/23 became invalid and started getting filtered. Then [Snow] created more ROAs to cover those routes. Why? Not sure. I think, at first, they were just messing around. Before that ROA was created, there was no ROA to assert anything about this address range.”

>>> Read full article>>>
Copyright for syndicated content belongs to the linked Source : Ars Technica – https://arstechnica.com/?p=1993801

Previous Post

1D Pac-Man is the best game I’ve played in 2024 (so far)

Next Post

Elon Musk: SpaceX needs to build Starships as often as Boeing builds 737s

Ecological boundaries must be incorporated in the post-COP30 climate regime – Nature

March 24, 2026

Highly and casually active citizen scientists contribute equally valuable data – EurekAlert!

March 24, 2026

What’s for Lunch? Celebrating 25 Years of Inspiring Science in Schools

March 24, 2026

Today on ARC PDX | March 24, 2026 | PCC and striking unions look to reach an agreement – KATU

March 24, 2026

Disney’s Latest ‘Create Your World’ Episode Goes Behind the Viktor & Rolf Cinderella Doll – WWD

March 24, 2026

The Economy Isn’t Collapsing-But Bigger Risks Are on the Horizon

March 24, 2026

Lucas Ball Joins Forces with Twelve6 Entertainment in Thrilling New Partnership

March 24, 2026

Cityblock Health Unveils Groundbreaking Report on AI Transforming Care for Medicaid and Dual-Eligible Populations

March 24, 2026

Meet the Washington Lawmakers Retiring or Pursuing New Offices in 2024

March 24, 2026

Datasea Launches First U.S. Commercial Acoustic Technology-Powered Wellness Care Robots, Paving the Way for Future Innovation

March 24, 2026

Categories

Archives

March 2026
M T W T F S S
 1
2345678
9101112131415
16171819202122
23242526272829
3031  
« Feb    
Earth-News.info

The Earth News is an independent English-language daily published Website from all around the World News

Browse by Category

  • Business (20,132)
  • Ecology (1,135)
  • Economy (1,153)
  • Entertainment (22,029)
  • General (20,593)
  • Health (10,191)
  • Lifestyle (1,167)
  • News (22,149)
  • People (1,155)
  • Politics (1,171)
  • Science (16,368)
  • Sports (21,654)
  • Technology (16,135)
  • World (1,146)

Recent News

Ecological boundaries must be incorporated in the post-COP30 climate regime – Nature

March 24, 2026

Highly and casually active citizen scientists contribute equally valuable data – EurekAlert!

March 24, 2026
  • About
  • Advertise
  • Privacy & Policy
  • Contact

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

Go to mobile version