View Single Post
Old 02-03-2021, 12:34 PM   #13
Ghost47
Junior Member
Ghost47 began at the beginning.
 
Posts: 1
Karma: 10
Join Date: Feb 2021
Device: Kindle PW2
Quote:
Originally Posted by tryol View Post
Unfortunately this doesn't seem to work on 5.12.4, it requires you to use either HTTP or HTTPS protocol now.
You might be able to block all non lan traffic to your kindle via your router. I was able to do this on my mikrotik router easily, but it'll probably be more difficult on other routers. An easier alternative would be to just unplug/disable your router's wan connection before connecting your kindle to the network. You could then run a web server on your lan then edit an existing mobi's TOC to point to that server. Heck if I'm reading the medium article correctly, I think it should be possible to trigger the exploit just by browsing to a webpage hosting a payload .jxr file. No ebook required.
Ghost47 is offline   Reply With Quote