article thumbnail

Cato CTRL Threat Brief: CVE-2024-3661 – VPN Vulnerability (“TunnelVision”)

CATO Networks

Upon establishing a connection with the VPN server, the VPN client modifies the host’s network settings to route all traffic through this secure tunnel. The malicious server is configured to use itself as the default gateway. Attack Execution Once a malicious DHCP is deployed on the same network as the targeted VPN user.

VPN 52