<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Possible attacks on Pfsense installed for Small Business office]]></title><description><![CDATA[<p dir="auto">I am trying to practicing to attack on pfsense using Kali Linux.Can any one help me what are the common attacks I can perform on pfsense.</p>
<p dir="auto">ISP-&gt;Pfsense-&gt;Lan1, Lan2-&gt;DMZ, Lan3</p>
]]></description><link>https://forum.netgate.com/topic/163160/possible-attacks-on-pfsense-installed-for-small-business-office</link><generator>RSS for Node</generator><lastBuildDate>Wed, 22 Jul 2026 11:21:08 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/163160.rss" rel="self" type="application/rss+xml"/><pubDate>Wed, 21 Apr 2021 14:13:46 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to Possible attacks on Pfsense installed for Small Business office on Wed, 21 Apr 2021 15:02:42 GMT]]></title><description><![CDATA[<p dir="auto">That depends a lot, you can play with kali linux attacking from inside..</p>
<p dir="auto">You could attack the dhcp server, like a dhcp starvation attack..<br />
In case you have Cisco, you could attack the CDP..<br />
You could attack the wifi network, especially those using WEP..<br />
These are just some examples of attacks in case you are already inside the network..<br />
ARP poisining and etc.. Rogue DHCP server, the list goes on...</p>
<p dir="auto">In case you are from outside the network, there is a block all rule in WAN.<br />
This block rule means that the firewall won't be accepting anything from outside.<br />
In the other hand,  you may have a port forward in which your server could be vulnerable, and not pfsense.</p>
<p dir="auto">Also, as pfsense is a stateful firewall, it will allow the clients to go to the internet, and allow the packets to return automatically.<br />
Based on that there is a possibility that you have a host that has a malware, botnet, or this host has a CPU vulnerability (MDS, TAA, Spectre/Meltdown) and thus is vulnerable to code execution, which, according to Arch linux security wiki, this host could be remotely exploited just by accessing a website running JAVA..</p>
]]></description><link>https://forum.netgate.com/post/979140</link><guid isPermaLink="true">https://forum.netgate.com/post/979140</guid><dc:creator><![CDATA[mcury]]></dc:creator><pubDate>Wed, 21 Apr 2021 15:02:42 GMT</pubDate></item><item><title><![CDATA[Reply to Possible attacks on Pfsense installed for Small Business office on Wed, 21 Apr 2021 14:47:25 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/dhruvin_parmar">@<bdi>dhruvin_parmar</bdi></a> said in <a href="/post/979136">Possible attacks on Pfsense installed for Small Business office</a>:</p>
<blockquote>
<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/nollipfsense">@<bdi>nollipfsense</bdi></a> thank you so much. But which are some examples of attacks ?</p>
</blockquote>
<p dir="auto">A properly configured firewall with IDS/IPS as well as pfBlockerNG mitigates attacks.</p>
]]></description><link>https://forum.netgate.com/post/979138</link><guid isPermaLink="true">https://forum.netgate.com/post/979138</guid><dc:creator><![CDATA[NollipfSense]]></dc:creator><pubDate>Wed, 21 Apr 2021 14:47:25 GMT</pubDate></item><item><title><![CDATA[Reply to Possible attacks on Pfsense installed for Small Business office on Wed, 21 Apr 2021 14:43:40 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/nollipfsense">@<bdi>nollipfsense</bdi></a> thank you so much. But which are some examples of attacks ?</p>
]]></description><link>https://forum.netgate.com/post/979136</link><guid isPermaLink="true">https://forum.netgate.com/post/979136</guid><dc:creator><![CDATA[Dhruvin_Parmar]]></dc:creator><pubDate>Wed, 21 Apr 2021 14:43:40 GMT</pubDate></item><item><title><![CDATA[Reply to Possible attacks on Pfsense installed for Small Business office on Wed, 21 Apr 2021 14:34:29 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/dhruvin_parmar">@<bdi>dhruvin_parmar</bdi></a> said in <a href="/post/979129">Possible attacks on Pfsense installed for Small Business office</a>:</p>
<blockquote>
<p dir="auto">practicing to attack on pfsense using Kali Linux</p>
</blockquote>
<p dir="auto">If you're not confident of pfSense firewall, use others. BTW, there is no common attacks.</p>
]]></description><link>https://forum.netgate.com/post/979134</link><guid isPermaLink="true">https://forum.netgate.com/post/979134</guid><dc:creator><![CDATA[NollipfSense]]></dc:creator><pubDate>Wed, 21 Apr 2021 14:34:29 GMT</pubDate></item></channel></rss>