IPv6 Vulnerability
This content has been archived
This article no longer conforms to NHS Digital's standards for cyber alerts, and may contain outdated or inaccurate information. Use of this information contained in this page is at your own risk
Summary
Threat details
Techniques for evading NIDS based on mobile IPv6 implementations reveal that it is possible to trick NIDS using Dynamically-Changing Communication Channels and create a covert channel by hiding information within IPv6 and its extension headers. Protocol tunnelling and IPv6 tunnelling-based transition mechanisms pose a major security risk as they allow the by-passing of improperly-configured or IPv4-only network security devices.
This vulnerability will lead to attacks that can retrieve sensitive information and remotely take control of an affected system.
Remediation steps
Last edited: 17 February 2020 11:32 am