Welcome Guest ( Log In | Register )

Bump Topic Topic Closed RSS Feed

Outline · [ Standard ] · Linear+

Unifi WARNING TO ALL UNIFI USERS, Threat warning, read inside

views
     
ciohbu
post May 29 2010, 03:12 PM

Group: Senior Member
*******
Senior Member
2,104 posts

Joined: Oct 2006
QUOTE(sg999 @ May 29 2010, 12:48 PM)
not understand
got simple explanation?
*
simple answer ? ur network is open to TM.. thumbup.gif and they know if u are downloading po*n

This post has been edited by ciohbu: May 29 2010, 03:14 PM
ciohbu
post May 29 2010, 03:34 PM

Group: Senior Member
*******
Senior Member
2,104 posts

Joined: Oct 2006
QUOTE(Neptern @ May 29 2010, 03:18 PM)
Is it even legal for them to monitor your internet usage like that instead of just logs on their side?
*
i am not sure about legal stuff, but if network admin go too far into ur network, i think that's against the privacy .. its like telco monitor wat u talk in every phone call..
ciohbu
post May 29 2010, 03:39 PM

Group: Senior Member
*******
Senior Member
2,104 posts

Joined: Oct 2006
QUOTE(mylinear @ May 29 2010, 03:39 PM)
I think this should be reported to MCMC and MYCERT.
*
MCMC ? its like reporting BN's MP corruption case to MACC ...lollzz

i think the only way we can do now is to disable the account and remote management.. use firewall to block related traffics.. and also spread this in ur blog or fb if u have..

This post has been edited by ciohbu: May 29 2010, 03:41 PM
ciohbu
post May 29 2010, 05:13 PM

Group: Senior Member
*******
Senior Member
2,104 posts

Joined: Oct 2006
QUOTE(YoungMan @ May 29 2010, 04:57 PM)
well... since it's possible, don't use their router. Buy one that is better and use it.
*
why always we consumer have to pay the price ? sweat.gif
ciohbu
post May 29 2010, 06:02 PM

Group: Senior Member
*******
Senior Member
2,104 posts

Joined: Oct 2006
QUOTE(night_wolf_in @ May 29 2010, 05:18 PM)
im not sure if i should laugh or cry.

If you think they want to spy on YOU by creating a second management account. Then it is big fail for all you guys, pretending to know how internet works.

Your Modem/router will be connected a layer two switch. or lets say connected to a port. they can use "SPAN" to see all the traffic you are sending and receiving. 

But again, doing that to every indivicual will be really tiring. Easier is, run "SPAN" to the uplink, that is connecting the layer two switch to the distribution switch. and bam, they can get all i/o traffic from the whole switch.

WAIT.

They can add high end firewalls at the uplinks to every area (logical or geographical) or just again SPAN the traffic to the firewalls.  AND they practically SEE every traffic you sending.

Conclusion is. dont cry a river for a second account your ISP put it. if they did, it is to make your experience better. but if you think you can out smart them. please do.

How i know. I'm a CCNP and working under routing/ switching and security for some enterprise.


Added on May 29, 2010, 5:19 pm

No, they use packet shaping devices for that.
*
well..since u claim that u are CCNP (which is one level on top of CCNA) and working under security huh ? u should know that any unknown account in user's router give security thread to the user ? no matter the account is for good or for bad ... thats the simple and basic theory, imagine ur customer found out that u have a secret account in their main router ? whistling.gif whistling.gif

and more serious is the remote management enabled...

This post has been edited by ciohbu: May 29 2010, 06:06 PM
ciohbu
post May 29 2010, 06:13 PM

Group: Senior Member
*******
Senior Member
2,104 posts

Joined: Oct 2006
QUOTE(night_wolf_in @ May 29 2010, 06:07 PM)
ya. it is management. there is no security issues to worry about. the moment you connected to the internet with your own router/modem with only your account, you are screwed by anyone who wants to screw you.

It is remote mangment of the ROUTER/MODEM. so if someone who is very smart, go play with the settings, then internet doesn't work. they dont have to send a guy to fix it. and dont tell me there are no people who screw their own modem then swear at tmnuts.

this great discovery is not worth the rant. If you think you know better than ISP bout network and security. then do what you want to do. Otherwise, i suggest keeping things the way they are.
*
i think the main topic here is the security thread by having remote management enabled and having a 2ndary admin account which is invisible to the user..

its the same as windows..

now since everyone knows it, they can choose whether to disable it or not.. icon_rolleyes.gif icon_rolleyes.gif

This post has been edited by ciohbu: May 29 2010, 06:18 PM
ciohbu
post May 29 2010, 08:56 PM

Group: Senior Member
*******
Senior Member
2,104 posts

Joined: Oct 2006
QUOTE(rizvanrp @ May 29 2010, 08:25 PM)
Oh no, CCNP's and their logic ._.

So please, I get that you're a CCNP and you could build your own Internet if you wanted but you and I both know that leaving an embedded Linux based router with SSHd wide open to the internet while its routing all your Internet traffic is a bloody bad idea and its highly exploitable. I wouldn't write a thread like this unless I've already done the attacks and understood the implications. I'm glad you know how to setup networking hardware and advanced routing protocols but when it comes to security you seem to be completely 'blur'.
You really think that BusyBox can only 'play with the settings' and cut you off the net? Lol, you need to get off IOS and into embedded Linux. It's stupid assumptions like this which created this mess in the first place. You have a VLAN capable router here with a full embedded Linux distro running on it and you assume all it runs is a PPP daemon. Bloody laughable.

There's no way such a cheap device could have a webserver with a PHP interpreter huh? smile.gif

Maybe you should work on that CEH soon wink.gif
*
ya...i also cannot tahan with the last line..when he put he is CCNP..lolzz

This post has been edited by ciohbu: May 29 2010, 08:56 PM
ciohbu
post May 29 2010, 09:41 PM

Group: Senior Member
*******
Senior Member
2,104 posts

Joined: Oct 2006
QUOTE(night_wolf_in @ May 29 2010, 09:00 PM)
so you want to tell me. that by disabling that other management account. and cause you know how to give a good password for your own user account. your modem/router is secured?

the first thing in security, there is no security. Even if you unplug your system from the internet. there is possible of security attacks.

Believe me. if someone wants to use that box you have for hacking. they would have done it long time ago.

so when it comes to, should ISP make an account for them to access your box to assist you. or should they close it. They rather make an account.

If later on they can't control the situation cause all the boxes turned into bots. then it is their issue to solve.

Just know that by disabling that account, you are not safer than when it was open. cheers
*
if u are really ccnp, u should know that nothing is 100% secured, u deal with enterprise a lot in ur work rite? i believe u do disable some unnecessary cisco router services such as bootp .. and giv ur router a AAA authentication .. ya.. it is not secured but at least its better than nothing.. same goes to this unifi router.

i notice that ur ideology is kinda funny.. that "if someone wants to use that box you have for hacking. they would have done it long time ago " .. sweat.gif sweat.gif izzit mean that if my new pc doesn't get hack on 1st day without antivirus, i no need to install antivirus for the rest of my life on that pc ?

This post has been edited by ciohbu: May 29 2010, 09:42 PM
ciohbu
post May 30 2010, 12:28 AM

Group: Senior Member
*******
Senior Member
2,104 posts

Joined: Oct 2006
QUOTE(darkskies @ May 30 2010, 12:23 AM)
Yup it's their death trap to get user into Unifi. After enough users they won't listen to anymore complaints and continue to do like what they do to streamyx users. Somemore it's a 2yrs contract which u must be vary of. The price doesnt sounds cheap when u terminate within 2 years.
*
the worst thing is u have to pay + u will have high blood pressure dealing with their customer service within this 2 years tongue.gif
ciohbu
post Jun 3 2010, 12:19 AM

Group: Senior Member
*******
Senior Member
2,104 posts

Joined: Oct 2006
TM..TM... stil think malaysian is stupid..

and credit to those ZTE's network engineer hired by TM + TM CCIEs .. tongue.gif

This post has been edited by ciohbu: Jun 3 2010, 12:38 AM
ciohbu
post Jun 3 2010, 07:53 AM

Group: Senior Member
*******
Senior Member
2,104 posts

Joined: Oct 2006
QUOTE(SlayerXT @ Jun 3 2010, 01:25 AM)
Hey are u working for those TM ZTE companies? Dont simply spill the beans here okay  tongue.gif
*
i mean "credit" ... hahaaa..
ciohbu
post Jun 3 2010, 01:14 PM

Group: Senior Member
*******
Senior Member
2,104 posts

Joined: Oct 2006
QUOTE(unker @ Jun 3 2010, 12:57 PM)
Dear Riz,
Again, thanks for all that you're doing. M'sia is such a screwed up place, full of rhetorics like the bullshit 1MalangSial and now TM Nut is screwing us conned-sumers. Lucky for us, we have you to make this country a much better place.  notworthy.gif  cheers.gif  rclxms.gif

What you've suggested to me sounds complicated. I'll need to check with TM and get them to come over. Then, work with them on changing the accessibility and password.

Have a great day ahead!!!
*
TMnut screw us since dial - up and streamyx era.. lolzz

Topic ClosedOptions
 

Change to:
| Lo-Fi Version
0.0187sec    0.30    7 queries    GZIP Disabled
Time is now: 6th December 2025 - 07:01 AM