Discussion:
Netgear wireless routers exposed to attacks
(too old to reply)
Roy
2015-02-18 14:47:45 UTC
Permalink
http://www.pcworld.com/article/2884812/information-disclosure-flaw-exposes-netgear-wireless-routers-to-attacks.html
David Kaye
2015-02-18 20:09:46 UTC
Permalink
Post by Roy
http://www.pcworld.com/article/2884812/information-disclosure-flaw-exposes-netgear-wireless-routers-to-attacks.html
Remote admin once again. I'm extremely careful about what I set up for
remote admin, and usually tell my customers that I prefer to have all remote
admins turned off and disabled, including things like remote desktop, etc.
Just too much vulnerability. They sometimes don't like it because if I have
to change something I have to go to their place and do it. I tell them, hey
look, would you rather spend the extra money for a personal visit or lose
thousands of dollars of business due to corrupted files, stolen accounts,
and other problems that can shut down your business? When they think of it
that way, they opt to lock things down as tightly as possible.

The only remote exception I make is for security cameras, but then I have
heavy passwords, a firewall that open only the bare minimum ports necessary
to run the function, and at least one NAT. I never allow cameras (or other
devices) to be exposed to the assigned IP or even to the NAT provided by the
ISP's router. I always put in at least one more translation.

The only static IP I have set up for anyone was done because that was the
only way I could make it work with the camera equipment involved, and all
admin functions are disabled, except to look at the video in realtime.. That
way nobody can get in and erase stored video, reformat the HD, or any of
that.






---
This email has been checked for viruses by Avast antivirus software.
http://www.avast.com
Kevin McMurtrie
2015-02-19 03:54:49 UTC
Permalink
In article
Post by Roy
http://www.pcworld.com/article/2884812/information-disclosure-flaw-exposes-net
gear-wireless-routers-to-attacks.html
Netgear and security? Some of their routers have unauthenticated telnet
from LAN permanently stuck on. I'll never touch them again.
--
I will not see posts from astraweb, theremailer, dizum, or google
because they host Usenet flooders.
(null)
2015-02-19 05:05:51 UTC
Permalink
Post by Kevin McMurtrie
In article
Post by Roy
http://www.pcworld.com/article/2884812/information-disclosure-flaw-exposes-net
gear-wireless-routers-to-attacks.html
Netgear and security? Some of their routers have unauthenticated telnet
from LAN permanently stuck on. I'll never touch them again.
Not even to install DD-WRT?
poldy
2015-03-01 23:06:25 UTC
Permalink
Post by (null)
Post by Kevin McMurtrie
In article
Post by Roy
http://www.pcworld.com/article/2884812/information-disclosure-flaw-exposes-net
gear-wireless-routers-to-attacks.html
Netgear and security? Some of their routers have unauthenticated telnet
from LAN permanently stuck on. I'll never touch them again.
Not even to install DD-WRT?
This list of "best" routers includes a Netgear model which is not in the
PC World article:

http://lifehacker.com/5920709/five-best-home-wi-fi-routers
sms
2015-03-18 22:44:26 UTC
Permalink
Post by poldy
Post by (null)
Post by Kevin McMurtrie
In article
Post by Roy
http://www.pcworld.com/article/2884812/information-disclosure-flaw-exposes-net
gear-wireless-routers-to-attacks.html
Netgear and security? Some of their routers have unauthenticated telnet
from LAN permanently stuck on. I'll never touch them again.
Not even to install DD-WRT?
This list of "best" routers includes a Netgear model which is not in the
http://lifehacker.com/5920709/five-best-home-wi-fi-routers
The Buffalo N600 model looks good, until you read the reviews of it at
places like Newegg.
--
"It's best not to argue with people who are determined to lose. Once
you've told them about a superior alternative your responsibility is
fulfilled and you can allow them to lose in peace." Mark Crispin,
inventor of the IMAP protocol.
Loading...