Live data from Hacker News

Ubiquiti Networks Breach

mailchi.mp

161–170 of 486 posts

Re: Ubiquiti Networks Breach

#161
post #125

Earlier quoted context omitted.

Raspberry pi 4 compute module might be good for building your own router too. You can attach a pcie network extension or usb to Ethernet for local usage. All of that would cost under $70. https://www.raspberrypi.org/products/compute-module-4/?varia... https://www.zahradnik.io/raspberry-pi-as-a-home-router Edit: You would be better served by other boards from this benchmark repo for vpn usage: https://github.com/Thoma…

How is it great with one NIC? Ethernet adapter and USB speeds seem less than ideal.

I don't need many ethernet ports so it works for me. My home network speed is less than a gigabit.

It's definitely not for people like OP but may work for other people who don't want to pay much and still have something decent that they can hack themselves.

I have tried to flash open firmware on my router before but it didn't work out. I had a raspberry pi already so I decided to convert it into a router and use it.

Re: Ubiquiti Networks Breach

#162
post #74

Earlier quoted context omitted.

Why not? All you have to do is point to one particular company whose systems have not been verifiably breached after having resisted actual attempts.

> one particular company whose systems have not been verifiably breached The unknown unknown. How can you be sure all the "resisted actual attempts" been even detected?

[deleted]

Re: Ubiquiti Networks Breach

#165
post #135

Earlier quoted context omitted.

I’ve become a big fan of MikroTik routers and 10G/SFP+ router/switch hardware in the last few years. Their web UI and SSH console are a bit quirky but the performance is pretty great for the price. My primary use case for their gear at home was to have a router that can handle a LACP WAN bond for my fancy cable modem as well as connecting to a 10G Ethernet switch via copper or direct-attached SFP+ to a CRS-305 10G sw…

Does it support Wireguard? Also RouterOS does not seem open source.

Sadly RouterOS isn’t open source. They’ve received a bit of flak for their “available on request” stance on getting GPL sources too. The fact that their GPL patches aren’t readily available is pretty uncool.

WireGuard isn’t supported on RouterOS 6, which is the current stable version, afaik. RouterOS 7 (currently available in beta) did support for WG in August though, as part of 7.1beta2 [1].

[1] https://mikrotik.com/download/changelogs/development-release...

Re: Ubiquiti Networks Breach

#166
post #106
post #97

Earlier quoted context omitted.

What evidence do you have that anyone has?

When was the last time you heard of a google user data breach?

https://www.forbes.com/sites/kateoflahertyuk/2018/10/09/goog...

https://arstechnica.com/information-technology/2013/11/googl...

Maybe you should know literally anything about the topic at hand before making sweeping assertions? I realise that's asking a lot here at HN, but it would improve the site a lot.

Re: Ubiquiti Networks Breach

#167
post #18

Ubiquiti is slowly becoming Sonos. The difference is, their potential for bad behavior, risks and attack surface is far, far greater.

What’s wrong with Sonos? I’m about to drop a bunch on a full home setup, should I consider an alternative?

Many people dislike the cloud-focus of sonos. When they started, the primary use case was streaming off of SMB shares, but now it's streaming from cloud providers. Given that all of your music is coming from the cloud, is it really that much of a stretch that your sonos hardware is heavily backed by cloud services too? It really does help ease-of-use for non-technical folk.

Re: Ubiquiti Networks Breach

#168
post #128

Earlier quoted context omitted.

Oh, sorry! These are available from Europe, but I've heard good things from US about similar boxes, when I searched with "best pfsense computer". Not the same brand, but similar hardware. https://www.amazon.de/gp/product/B08JHKZMTN/ref=ppx_yo_dt_b_... Let's see how it works, but I expect it to be much faster than my current ARMv7 box. Of course if you have space for a rack, go with something actively cooled. In our a…

Despite the name in the Amazon listing, it has nothing to do with Mikrotik; also a 1Gbit ARM Mikrotik router/firewall can be had for considerably less.

How fast are the ARM CPU they have in their routers, do they support AES-NI and how much data you can push with VPN encryption through their boxes?

The current ARMv7 I have goes to about 100 degrees Celsius and loads in the level of 4 to 6 when downloading a bunch of data full speed.

Re: Ubiquiti Networks Breach

#170
post #125

Earlier quoted context omitted.

Raspberry pi 4 compute module might be good for building your own router too. You can attach a pcie network extension or usb to Ethernet for local usage. All of that would cost under $70. https://www.raspberrypi.org/products/compute-module-4/?varia... https://www.zahradnik.io/raspberry-pi-as-a-home-router Edit: You would be better served by other boards from this benchmark repo for vpn usage: https://github.com/Thoma…

How is it great with one NIC? Ethernet adapter and USB speeds seem less than ideal.

A Pi 4 can handle about 1 Gb without issue. It is a great option for consumer workloads at consumer prices. I've certainly seen far worse consumer gear.
Post reply on HN