NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.

Forum Discussion

Rafius's avatar
Rafius
Initiate
Aug 09, 2022

Netgear router software allows for exfil of secret data when system is 'blocked' from access control

Putting a connected device in 'blocked' mode by using access control still allows for secret data to be exfiltrated out of the device and onto the WAN by using UDP protocol.  Apparently the "blocked" status only applies to TCP.

1 Reply

  • I've tested this on a NetGear R7000 and a nighthawk AX6.  Devices that stream via UDP can still push to a listener on the internet even though the device is 'blocked' via access control.  Only when i Block a service "UDP -ALL" does UDP get blocked.