Hacker News new | ask | show | jobs
by RulerOf 1416 days ago
I read this and _instantly_ wonder if it's viable for certificate extraction to bypass the god-awful NAT system in AT&T's equipment, a-la pfatt: https://github.com/MonkWho/pfatt

Edit: Ah yes, this is covered in the section "Obtaining the certificate via reboot & exploitation"

Sadly my hardware appears to be patched.

1 comments

You can downgrade the firmware and extract the certs: https://www.dupuis.xyz/bgw210-700-root-and-certs/

However, AT&T added another layer of authentication in mid-2021 that precludes the use of third-party hardware. I don't think that part has been cracked yet.

You don't need the 802.1x certificate, it's never actually been needed: https://www.dslreports.com/forum/r33442912-AT-T-Fiber-Bye-by...
That's a very interesting thread. Looks like things haven't been figured out to the point of prescriptive directions, but thank you very much for bringing it to my attention. Will keep my eyes on it.