a thoughtful web.
Good ideas and conversation. No ads, no tracking.   Login or Take a Tour!
comment by nowaypablo
nowaypablo  ·  2153 days ago  ·  link  ·    ·  parent  ·  post: FBI tells router users to reboot now to kill malware infecting 500k devices

Just to be clear, this is a legitimate warning that applies to me and I should definitely hit the reset button on my router, yes?





user-inactivated  ·  2153 days ago  ·  link  ·  

yea. andd update firmware if available.

kleinbl00  ·  2153 days ago  ·  link  ·  

You understand this stuff better than me - is it fundamentally a DD-WRT exploit?

user-inactivated  ·  2152 days ago  ·  link  ·  

Flaw in the backend Linux kernel from what I understand. When you get that deep into the nuts and bolts my brain shuts down. The "app" that is being mentioned is using a know bug in the older code to work. Talos write up here.

And that Ubiquiti stuff you mention? Looks sexy as hell; now I have a new research project for some people I know. I think you linked it before with the birth center but I was hammered on other things at the time. I like the VPN and Firewall in that. Cisco has a $400 product that I can get smartnets on (yay corporate IT demanding warranties and such), but this looks more interesting.

kleinbl00  ·  2152 days ago  ·  link  ·  

Yeah, that'd be DD-WRT. It's what makes Tomato possible. Tomato, by the way, is cool until it isn't - things are great until you hit its device limit (which seems to be, like, "ten") and then it chokes up so bad that it pushes your ping times up to like 30s.

Unifi is dope. The one thing that's extra special stupid, is you can hit your cloud key from anywhere. You can hit your cloud key from your other cloud key. You can set up VPN stupid easy. But unless you have two static IPs, you can't VPN from cloud key to cloud key.

Yet.