Live data from Hacker News

200,000+ MikroTik routers worldwide compromised to inject cryptojacking malware

badpackets.net

1–10 of 76 posts

Re: 200,000+ MikroTik routers worldwide compromised to inject cryptojacking malware

#3
I guess nobody listened [0].

But considering some of the comments on that thread, I'm not entirely shocked.

> Attackers will not be able to use that, nor will they care.

> If you're exposing that unfettered to the web at large, imo you deserve what you get.

Did no one really think 200,000 devices was a worthwhile target?

[0] https://news.ycombinator.com/item?id=18166003

Re: 200,000+ MikroTik routers worldwide compromised to inject cryptojacking malware

#4
If you have a currency that can be generated via compute power the incentive structure it creates is to take over as much compute power as you can. Does the incentive structure represent a serious design flaw in the system for widespread adoption?

Re: 200,000+ MikroTik routers worldwide compromised to inject cryptojacking malware

#6
post #5

So ... which SoHo router manufacturer can we actually trust? It seems pretty common in this industry to either not supply security updates, or to only supply them for a very short amount of time.

Seems like the solution is still to see what router models are supported by your favorite aftermarket firmware.

Re: 200,000+ MikroTik routers worldwide compromised to inject cryptojacking malware

#7
post #5

So ... which SoHo router manufacturer can we actually trust? It seems pretty common in this industry to either not supply security updates, or to only supply them for a very short amount of time.

Turris omnia. Open source (both hardware and software), lets you ssh into it directly out of the box (well, after you have set a root password in the gui)

They provide regular software updates, and it is imho a good hacker/tinkerer router.

Re: 200,000+ MikroTik routers worldwide compromised to inject cryptojacking malware

#9
post #5

So ... which SoHo router manufacturer can we actually trust? It seems pretty common in this industry to either not supply security updates, or to only supply them for a very short amount of time.

See my post above: APU2 by pcengines. Put debian on it.

Re: 200,000+ MikroTik routers worldwide compromised to inject cryptojacking malware

#10
post #9
post #5

So ... which SoHo router manufacturer can we actually trust? It seems pretty common in this industry to either not supply security updates, or to only supply them for a very short amount of time.

See my post above: APU2 by pcengines. Put debian on it.

It's a great piece of hardware, of which I've used dozens for various purposes. But they draw ~10 times more power than, say, a cheap Linksys wifi router. So if all you're after is a SoHo wifi router, it might not be the best way to go.
Post reply on HN