Live data from Hacker News

Ubiquiti Networks Breach

mailchi.mp

401–410 of 486 posts

Re: Ubiquiti Networks Breach

#401
post #377

As a former Ubiquiti employee, I'm sad to watch the slow decline of the company. There was a steady exodus of engineering talent through 2020. The CEO was focused on moving to countries where engineering was cheaper and employees complained less about constant crunch mode. If you search around, you can find interviews where he brags about closing the San Jose office because he thought everyone there was too entitled.…

I'm a developer from one of the cheaper engineering countries to where Ubiquiti has moved to. I'm not sure what are you implying with your comment and I hope it's not "the company is declining because the company moved talent to countries where developers are cheaper". I do personally have friends working there and they are top class developers. Living costs don't necessarily correlate with talent levels. That said I…

> Living costs don't necessarily correlate with talent levels.

As someone who lives in a low cost country: rubbish. There's a reason we're a lower cost.

1. We have a lower standard of education

2. We have a higher cost of technology (relative to average income)

3. We have a lower need for the luxury market where most technology resides

You can also look at the proportion of field leaders. Are more from the developed nations or the developing ones?

The developed nations had a headstart on technology, do you think the developing ones have overcome that, despite most of us going backwards in terms of access to education and the wealth gap?

Don't take it personally, I'm not trying to tell you that you're a bad developer. What I'm saying is we have to work harder to uplift our country's fields and not fall into the trap of "well I'm the biggest fish in this tiny pond so therefore I'm an equally big fish in the ocean". It does not work that way.

Re: Ubiquiti Networks Breach

#402

Earlier quoted context omitted.

It's definitely overkill, but what is a homelab if not overkill? It's not really high maintenance, though. Once it's in and running you'll never have to touch it.

Until you do and then you’ve forgotten how and what to do.

Isn't this true for any advanced technology?

Re: Ubiquiti Networks Breach

#403
post #25

Argh, why do I learn about this from HN when they pretty much force me through the cloud login with UDM-Pro. Nothing in the dashboard. Also I think http://unifi/ is crap from a security standpoint. Their threat management also seems to be just some kind of a bad joke.They could for example do a nice hardware based honeypot that you have to untrigger with physical access. They could offer so much more for prosumers pr…

Speaking of security... I fell for their marketing and slick Apple-like design and decided to add a UDM-Pro router and access point to my pre-existing network. I thought I was doing something wrong when the UDM-Pro ignored everything on my network that wasn't connected directly to a Unifi device. I asked about it on the Ubiquiti subreddit and basically got blackballed for "whining". Opened a support ticket with Ubiqu…

Hmm.. I’ve seen a few UDMP deployments with third party switches in place, which still have visibility into the clients connected through them. You can’t manage the switches obviously. If you’re trying to do client management functionality that would be handled at L2 (MAC whitelisting on a switch port, etc) UBNT’s management interface won’t abstract rando vendor’s functionality for you, but isn’t that expecting a bit much? Meraki deployments won’t do that either, if I understand what you’re after (and maybe I’m not).

As another comment said, your strategy about breaching the firewall is confusing but it sounds like a configuration issue. If your aim is to default deny outbound traffic, or traffic from or across the LANs except for approved devices, that’s an achievable aim regardless of what switches are in the mix. If you’re trying to do port level security, you’d need a managed switch, Ubiquiti or no.

Re: Ubiquiti Networks Breach

#404
post #377

As a former Ubiquiti employee, I'm sad to watch the slow decline of the company. There was a steady exodus of engineering talent through 2020. The CEO was focused on moving to countries where engineering was cheaper and employees complained less about constant crunch mode. If you search around, you can find interviews where he brags about closing the San Jose office because he thought everyone there was too entitled.…

I'm a developer from one of the cheaper engineering countries to where Ubiquiti has moved to. I'm not sure what are you implying with your comment and I hope it's not "the company is declining because the company moved talent to countries where developers are cheaper". I do personally have friends working there and they are top class developers. Living costs don't necessarily correlate with talent levels. That said I…

I'm one as well, but I think the OP meant that the company is not trying to keep the existing experienced employees and just replacing them when they leave.

My company started doing the same and erosion of knowledge is really bad.

Re: Ubiquiti Networks Breach

#405
post #105
post #25

Argh, why do I learn about this from HN when they pretty much force me through the cloud login with UDM-Pro. Nothing in the dashboard. Also I think http://unifi/ is crap from a security standpoint. Their threat management also seems to be just some kind of a bad joke.They could for example do a nice hardware based honeypot that you have to untrigger with physical access. They could offer so much more for prosumers pr…

Just ordered a Chinese box with 8th gen U-series i5, 8 GB of RAM and 120 GB of SSD. Has six ethernet connections, HDMI and COM. Planning to install OpenWRT to it, and with AES-NI the system should be easily able to push the full 1 Gbps of traffic through Wireguard. I've had whatever routers before, but mostly when using some VPN to hide the traffic from your home network, and if having fast enough internet, a good CP…

"with AES-NI the system should be easily able to push the full 1 Gbps of traffic through Wireguard"

You were probably thinking of OpenVPN? Wireguard is not based on AES and thus has no use for AES-NI.

Re: Ubiquiti Networks Breach

#406
post #377

Earlier quoted context omitted.

I'm a developer from one of the cheaper engineering countries to where Ubiquiti has moved to. I'm not sure what are you implying with your comment and I hope it's not "the company is declining because the company moved talent to countries where developers are cheaper". I do personally have friends working there and they are top class developers. Living costs don't necessarily correlate with talent levels. That said I…

> Living costs don't necessarily correlate with talent levels. As someone who lives in a low cost country: rubbish. There's a reason we're a lower cost. 1. We have a lower standard of education 2. We have a higher cost of technology (relative to average income) 3. We have a lower need for the luxury market where most technology resides You can also look at the proportion of field leaders. Are more from the developed…

> You can also look at the proportion of field leaders. Are more from the developed nations or the developing ones?

Lower cost of living does not imply developing nation.

Czhech Republic or Poland or Taiwan are developed nations, all with the cost of living a fraction of Bay Area.

I see Ubiquiti dev center apparently moved to Latvia. You can argue it's a depressed region of the EU but it is not a developing country by any metric.

Re: Ubiquiti Networks Breach

#407
I use the LinuxServer.io Unify controller docker container, it updates very often and everytime it asks me if I want to share data. It feels so dirty, my lan traffic is so personal and I meant to upgrade security and privacy by switching away from my ISP provided modem/wifi. I'm beginning to regret this decision and maybe should have chosen another solution.

Re: Ubiquiti Networks Breach

#408
post #377

Earlier quoted context omitted.

I'm a developer from one of the cheaper engineering countries to where Ubiquiti has moved to. I'm not sure what are you implying with your comment and I hope it's not "the company is declining because the company moved talent to countries where developers are cheaper". I do personally have friends working there and they are top class developers. Living costs don't necessarily correlate with talent levels. That said I…

> Living costs don't necessarily correlate with talent levels. As someone who lives in a low cost country: rubbish. There's a reason we're a lower cost. 1. We have a lower standard of education 2. We have a higher cost of technology (relative to average income) 3. We have a lower need for the luxury market where most technology resides You can also look at the proportion of field leaders. Are more from the developed…

Look at the US health system and the declining life expectancy in the US if you believe that higher cost equals better.

Re: Ubiquiti Networks Breach

#409
post #283

Regarding authenticity, from the TechCrunch article about this: > The networking company quickly followed its email with a post on its community pages confirming that the email was authentic, after several complained that the email sent to customers included typos. Indeed: How am I supposed to know whether this email is really from Ubiquiti? * There was apparently no official press release. * All links in the email,…

The best user behaviour on receiving a potentially 'fishy' email is to not click any inks, but to go directly to the site in question and change your password, if you feel the email is genuine in anyway.

Re: Ubiquiti Networks Breach

#410
post #301

Earlier quoted context omitted.

I need to set up multiple wifi SSIDs, each on a distinct VLAN, and apply firewall rules to ensure things like: hosts in the "home" vlan can open connections to hosts in the "iot" vlan, but "iot" cannot open connections to "home".

Look at Ruckus

would be good to see more argument behind this?
Post reply on HN