“Cable Haunt” Vulnerability Exposes 200 Million Modem Cables to MITM Attacks

Date:

Share post:

A security vulnerability named “Cable Haunt,” in Broadcom’s cable modem, exposed around 200 million home broadband gateways in Europe, to remote hijacking attacks.

The flaw, tracked as CVE-2019-19494, was discovered by four Danish researchers – Alexander Dalsgaard Krog, Jens Hegner Staermose, and Kasper Kohsel Terndrup from security company Lyrebirds, along with an independent researcher Simon Vandel Sillesen. The CVE-2019-19494 vulnerability could be exploited by malicious actors by tricking a victim into opening a specially crafted web page, which contains malicious JavaScript code.

According to the researchers, “Cable Haunt is a critical vulnerability found in cable modems from various manufacturers across the world. The vulnerability enables remote attackers to execute arbitrary code on your modem, indirectly through an endpoint on the modem. Your cable modem is in charge of the internet traffic for all devices on the network. Cable Haunt might therefore be exploited to intercept private messages, redirect traffic, or participation in botnets.”

Cable Haunt impacts a standard hardware and software component of Broadcom chips, known as spectrum analyzer, which protects the cable modem from signal surges.

The researchers further added, “The exploitation will be performed in two steps. First, access to the vulnerable endpoint is gained through a browser. Second, the vulnerable endpoint is hit with a buffer overflow attack that gives the attacker control to the modem.”

The attackers can also perform a range of malicious activities including:

  • Change default DNS server
  • Launch remote man-in-the-middle attacks (MITM attacks)
  • Hot-swap code or even the entire firmware
  • Upload, flash and upgrade firmware silently
  • Disable ISP firmware upgrade
  • Change every config file and settings
  • Get and Set SNMP OID values
  • Change all associated MAC addresses
  • Change serial numbers
  • Turn devices into bots for botnet attacks

Subscribe

Name(Required)
Privacy(Required)

Upcoming Events

Related articles

5th Edition MENA CYBER SECURITY CONFERENCE – RIYADH EDITION

Name: 5th Edition MENA CYBER SECURITY CONFERENCE - RIYADH EDITION Website: https://mena-cybersecurity.com/riyadh/ Date: September 8th, 2026 Location: Crowne Plaza Riyadh Palace,...

Cyber Security Expo

Name: Cyber Security EXPO Website: https://www.cybersecurityexpo.co.uk/cheltenham Date: September 10, 2026 Location: Cheltenham Racecourse, United Kingdom The Cyber Security EXPO is the only...

6th Edition MENA CISO SUMMIT – Dubai Edition

Name: 6th Edition MENA CISO Summit – Dubai Edition Website: https://mena-cybersecurity.com/ciso-dubai/ Date: September 30, 2026 Location: Millennium Airport Hotel, Dubai,...

Build the Pipeline, Not the Headcount

There's a principle in Taoist philosophy called wu wei, often translated as "effortless action" or "non-doing." It doesn't...