article thumbnail

Cato CTRL Threat Brief: CVE-2024-3661 – VPN Vulnerability (“TunnelVision”)

CATO Networks

Upon establishing a connection with the VPN server, the VPN client modifies the host’s network settings to route all traffic through this secure tunnel. By exploiting DHCP and specifically Option 121, attackers can manipulate routing tables and compromise network security.

VPN 52