Ubiquiti EdgeRouters - vunerability

Ubiquiti EdgeRouters - vunerability

Author
Discussion

Brother D

Original Poster:

3,760 posts

178 months

Wednesday 28th February
quotequote all
I know a lot of people are very pro Unifi products on this forum (myself included) but this popped up in my feed just to make anyone that uses the edge routers aware.

https://duo.com/decipher/fbi-details-apt28-attacks...

(Probably not that many people use the edge routers but still its something to be aware of).


Brother D

Original Poster:

3,760 posts

178 months

Thursday 29th February
quotequote all
outnumbered said:
This is actually old news, and it was simply caused by Ubiquiti shipping devices with a default "admin" password. So the hackers didn't even have to try very hard.

As long as you've changed the default account/password to something unguessable, or turned off management access from the internet, there's no problem.
No... this is something new - the FBI released a notification last week regarding this:

https://www.justice.gov/opa/pr/justice-department-...