Groups keyboard shortcuts have been updated
Dismiss
See shortcuts

Blast-RADIUS

28 views
Skip to first unread message

Yasin KAPLAN

unread,
Jul 9, 2024, 11:02:53 AM7/9/24
to KaplanSoft TekRADIUS
Make sure that your access servers implement and always send Message-Authenticator attribute. Please see https://blastradius.fail

The Blast-RADIUS attack allows a man-in-the-middle attacker between the RADIUS client and server to forge a valid protocol accept message in response to a failed authentication request.

Blast-RADIUS is a protocol vulnerability, and thus affects all RADIUS implementations using non-EAP authentication methods over UDP.
Reply all
Reply to author
Forward
0 new messages