Live data from Hacker News

Ubiquiti Networks Breach

mailchi.mp

71–80 of 486 posts

Re: Ubiquiti Networks Breach

#71

Ubiquiti has typically been the "cloudless" provider which is why I've used their stuff. They've been sorta moving in a disturbing direction for cloud control. I don't want that risk.

Cloudless if and only if you run their gigantic bloated Java network management tool. I really like ubiquiti hardware but I got fed up with their software BS. Now I use either Mikrotik or TP-Link’s industrial offerings. Both are way easier to work with than ubiquiti and the hardware is usually in the same tier.

You don't need their Java client (which I agree, is BS) if you use a Cloud Key or a UDM PRO.

Re: Ubiquiti Networks Breach

#72
post #25

Argh, why do I learn about this from HN when they pretty much force me through the cloud login with UDM-Pro. Nothing in the dashboard. Also I think http://unifi/ is crap from a security standpoint. Their threat management also seems to be just some kind of a bad joke.They could for example do a nice hardware based honeypot that you have to untrigger with physical access. They could offer so much more for prosumers pr…

Have you tried MikroTik gear?

Re: Ubiquiti Networks Breach

#73

Ubiquiti is in a weird market, where they are better than Linksys/Netgear etc, but they are crap compared to something like Meraki. Their support isn't very good (they point you to a forum), their hardware replacement is spotty (sorry, out of stock, you'll have to wait!), and their hardware/software is buggy. We had 48 port switches that would randomly reboot, for example. They can be a decent solution for SMB wifi,…

Are there any 48 port switches you would recommend? I've concluded that they're overpriced compared to multiple 24 port switches for example but I'm hoping I'm wrong. Never heard of Meraki for example.

Meraki is a Cisco brand. It's most important feature is, that once you buy into it, you are going to pay yearly license fee.

Re: Ubiquiti Networks Breach

#74
post #50
post #45

Earlier quoted context omitted.

I think it is possible to secure yourself against a devoted, persistent threat group. I think it's expensive, but possible. Do you have data to back up your claim that no one, ever has ever successfully remained secure?

No one could possibly prove this kind of negative.

Why not? All you have to do is point to one particular company whose systems have not been verifiably breached after having resisted actual attempts.

Re: Ubiquiti Networks Breach

#75
post #25

Argh, why do I learn about this from HN when they pretty much force me through the cloud login with UDM-Pro. Nothing in the dashboard. Also I think http://unifi/ is crap from a security standpoint. Their threat management also seems to be just some kind of a bad joke.They could for example do a nice hardware based honeypot that you have to untrigger with physical access. They could offer so much more for prosumers pr…

I’ve become a big fan of MikroTik routers and 10G/SFP+ router/switch hardware in the last few years. Their web UI and SSH console are a bit quirky but the performance is pretty great for the price.

My primary use case for their gear at home was to have a router that can handle a LACP WAN bond for my fancy cable modem as well as connecting to a 10G Ethernet switch via copper or direct-attached SFP+ to a CRS-305 10G switch. Their RB-4011 was a perfect fit, without any of the Ubiquiti SSO/controller stuff to worry about.

I haven’t explored their WiFi products yet (still using an old router as an AP) but their product range is pretty broad. Might look into it this year though.

Re: Ubiquiti Networks Breach

#77
post #25

Argh, why do I learn about this from HN when they pretty much force me through the cloud login with UDM-Pro. Nothing in the dashboard. Also I think http://unifi/ is crap from a security standpoint. Their threat management also seems to be just some kind of a bad joke.They could for example do a nice hardware based honeypot that you have to untrigger with physical access. They could offer so much more for prosumers pr…

I turned off cloud login a while back. There’s a toggle in the settings for this.

I was confused by the parent comment too. Aside from the remote management features, if you turn off cloud login you still get everything else. Maybe it's something specific to the USG Pro? I've only used the smaller USG.

Re: Ubiquiti Networks Breach

#79

PSA: with Mailchimp URLs, it's best to remove the `?e=xxx` URL parameter. That way, A) you can't be identified by the sender as the person who shared the email, and B) other people can't flood your inbox by clicking the "unsubscribe" link at the bottom of the email. In this case, the cleaned URL that should have been posted is https://mailchi.mp/ubnt/account-notification

[deleted]

Re: Ubiquiti Networks Breach

#80
post #33

Ubiquiti had a data breach, but what could hackers possibly want to know which we didn't know already? All their customers are overpaid engineers who got sucked into dumb influencer marketing convincing them to buy overpriced industrial grade networking kit for their 50m2 flat.

Ehh they make great products for smb/coliving/coworking spaces, where you need better hardware than the box the ISP gives you but you don’t need the kitchen sink that comes with Cisco. Simple enough that a slight savvy frat bro or small business owner can set it up in an afternoon and have seamless handoff across a large space with several access points and PoE.

Or if you live in a four story house with half a meter of concrete between every floor...

I’m really happy with my UniFi kit..

Post reply on HN