eduroam response to the Blast!RADIUS vulnerability

This advisory is the eduroam response to the attack “Blast!RADIUS – RADIUS/UDP considered harmful” as published on 09 July 2024 at https://blastradius.fail .

Readers are encouraged to read the FAQs on that website and https://www.inkbridgenetworks.com/blastradius/faq prior to reading the details of this advisory.

Conclusions:

  • eduroam authentications are NOT affected by this attack.
  • Hotspot operators should cautiously check the local administrative access controls for their equipment.

For a more detailed response on technical level, please refer to the PDF version of this advisory.

eduroam blast vulnerability

Skip to content