Which do you prefer, a standalone broadband package or bundle?

Standalone (just the internet)
Bundle (net, phone, tv etc.)

Which service do you most desire to be bundled with a fixed line broadband connection?

Line Rental (Calls etc.)
Television
Mobile Phone (Service)
Mobile Broadband

More Polls | Past Polls Archive
By: MarkJ - 21 January, 2010 (9:08 AM) - Score: 1813 - Wi-Fi, Mobile Broadband, Security
mifiCustomers of T-Mobile and Vodafone UK using one of the operators MiFi (2352) devices, essentially a portable battery powered wireless router that has been designed to distribute their Mobile Broadband service over a Wi-Fi link, should be aware they suffer from a security vulnerability that could allow access to a remote hacker.

It's understood that an attacker could use this new vulnerability to alter the devices configuration settings, such as to enable its GPS without your permission. Luckily the UK / EU 2352 devices, as manufactured by Novatel Wireless, are "far less vulnerable" to the flaw - "if the carrier is on the 5.15 firmware or greater" - than their 2200 series USA counter parts.

Kevin Thornton from Novatel Wireless informed ISPreview:

"MiFi has CGI parameters that are intentionally programmable so that developers can read or change MiFi settings and build browser based widgets. Most of these are openly published by Novatel. There are other CGI settings not published for MiFi that are accessible only when a user surfs to a malicious web site and stays connected to that site.

The nature of the threat is better characterized by the ability of the hacker to change MiFi settings, only when connected to the malicious site, and does not provide access to the user's personal data. The exception to this is location data such as GPS.

In this instance, the user location data is visible only when the user is connected to the malicious site and GPS is activated. No malware remains on MiFi when the user disconnects from the malicious site. Any data received or sent through MiFi is secure. Novatel will provide a patch going forward."

Novatel informs us that its UK 2352 model is less vulnerable because the user must first be logged on to their admin page before being lured to a malicious website (i.e. while the devices admin session is open). If a user closes the admin page at the end of the session there is no risk. This is currently being explained to Vodafone and T-Mobile UK, carriers of the 2352 models.

UPDATE 27th January 2010

Corrected the firmware version mentioned in this news item from 7.15 to 5.15, as per an update by Novatel.
Share: SD, STB, FB, Digg, Blink, Del.icio.us, Reddit, Yahoo, Mixx, Propeller, Diigo
Option: Link | Search

Leave a comment


baffled cheese confused cool frown glee laugh mad mixedup noexpression sad sadder shifty shocked smile smirk timid tongue whatever wink 



Characters left (comments containing swear words may not be saved)

Please MAKE A COPY OF YOUR COMMENT so you can re-post if an error occurs.

Enter this code in the field below.
Security Image





Previous News Stories
2 September, 2010
2:58 PM - UK Business ISP Easynet Global and BSkyB Complete Sale to Private Equity LDC - (0)
2:40 PM - Orange UK Joins 3 and T-Mobile in 3G Mobile Broadband Network Share - (0)
1:02 PM - Virgin Media UK Provides Broadband ISP Speed Clarity to Customers - (2)
7:16 AM - UK Consumer Panel Urges Gov to Get Tough on Misleading Broadband ISP Speeds - (0)
2:00 AM - Virgin Media UK Raises Cable Broadband ISP Install Charge to 40 Pounds - (0)
1:16 AM - UK FTTH Fibre Optic Broadband ISP Fibreband Offers Standalone Services - (3)
1 September, 2010
12:56 PM - UK Advertising Watchdog Given Powers to Tackle Broadband ISP Website Ads - (0)
12:10 PM - Top 9 Fastest UK Broadband ISPs Ranked by Speed for August 2010 - (0)
9:01 AM - UK ISP Aquiss Offers FREE Business 40Mb Fibre Optic FTTC Broadband Installs - (0)
7:28 AM - Rural Norfolk UK Campaigners Criticise BT Claims of National Broadband Success - (3)
31 August, 2010
2:17 PM - Fibrecity Offer FREE 100Mb Fibre Optic Broadband Connections to Dundee UK - (2)
1:55 PM - Huawei Helps BT Deploy its Superfast UK Fibre Optic Broadband Service - (0)
1:16 PM - Broadband ISP Migration Problems Still Impact Half of UK Switchers - (0)
8:26 AM - Gadgetshow UK Launch TV Campaign to Stop Bad Broadband Speed Advertising - (2)
7:08 AM - UPDATE BT Group Celebrates 15 Millionth Broadband ISP Connection in the UK - (0)
28 August, 2010
1:00 AM - YouTube UK Launch FREE Broadband Movie Streaming Service - (0)
27 August, 2010
1:35 PM - More than 19 Million UK Households Now Have Internet Access in 2010 - (2)
8:19 AM - UK Law Firm Ralli Seeks Group Action for Harassment Against ACS Law - (2)
7:23 AM - UK ISP XILO Reveals Preliminary 40Mbps Fibre Optic FTTC Broadband Prices - (3)
1:20 AM - Fibrecity Appoints Former BT CEO to Manage Open UK Broadband Platform - (0)
26 August, 2010
2:12 PM - Ofcom UK Illegal Broadband ISP Copyright File Sharing Code Facing Delays - (4)
8:33 AM - UK ISP Entanet Slams USA Google and Verizon Net Neutrality Partnership - (0)
8:06 AM - ZyXEL and Carrier Wales Deliver Uncontended Broadband to Welsh Businesses - (1)
7:19 AM - T-Mobile UK Slashes Pay Per Day Mobile Broadband Price - (0)
1:44 AM - UK ISP TalkTalk Launches 2010 Digital Heroes Awards - (0)
25 August, 2010
12:35 PM - UK ISP PlusNet CEO Departs and is Replaced by Jamie Ford - (2)
9:38 AM - Virgin Media UK Extends 2 MONTHS FREE Broadband Service Bundles - (0)
9:12 AM - WARNING New Phone SCAM Targeting UK Broadband ISP Customers - (1)
8:34 AM - Europe and USA Broadband ISP Prices Continue to Fall as Speeds Increase - (0)
7:31 AM - BT Consistently Fast Broadband Adverts Banned by UK Advertising Authority - (2)
24 August, 2010
12:41 PM - Channel Five Rejoins UK Open Broadband TV Standard Project Canvas - (0)
9:01 AM - PCCW Backed UK Broadband Group Gives Hope to WiMAX Wireless - (7)
8:48 AM - BSkyB Mulling the Closure of Broadband ISP Sibling UK Online - (0)
7:55 AM - Local South West England Council Defines NGA UK Broadband as 5Mbps - (1)
7:05 AM - ACS Law Referred to Disciplinary Tribunal Over UK ISP File Sharing Threat Letters - (1)

Generated in 0.54284 seconds.
DB queries: 8

Copyright © 1999 to Present - ISPreview.co.uk - All Rights Reserved (Terms, Privacy Policy, Links (.), Live Chat & Website Rules).