top | item 40106490

(no title)

farhaven | 1 year ago

> Does configuring a custom DNS server (like Cloudflare one) on your local computers solve it?

No. If anything, that'd make it worse. The issue reported in TFA is that Fritz!Boxes by default resolve the domain `fritz.box` to themselves for their admin interface, even if that domain has been registered on the public internet by someone else. If you configure cloudflare, you'll prevent that, which will _always_ get you the potentially attacker controlled DNS results.

discuss

order

avidiax|1 year ago

There is a 2nd issue.

If you have a local machine called "myshare" and you mistype "myhsare", it may resolve to the attacker's machine.