this post was submitted on 09 Jul 2024
634 points (99.7% liked)

Technology

58009 readers
2968 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related content.
  3. Be excellent to each another!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, to ask if your bot can be added please contact us.
  9. Check for duplicates before posting, duplicates may be removed

Approved Bots


founded 1 year ago
MODERATORS
 

During installation, the router sent several data packets to an Amazon server in the US. These packets contained the configured SSID name and password in clear text, as well as some identification tokens for this network within a broader database and an access token for a user session that could potentially enable a MITM attack.

Linksys has refused to acknowledge/respond to the issue.

you are viewing a single comment's thread
view the rest of the comments
[–] ptz@dubvee.org 171 points 2 months ago (4 children)

This. This is why I have trust issues and only run devices I can flash OpenWRT (or other appropriate custom firmware) to.

[–] Max_P@lemmy.max-p.me 79 points 2 months ago (2 children)

It's like all the tech companies are actively working together to give us trust issues at this point. Used to flash things for fun because I can, more and more it feels like it's a necessity just to get basic human rights respected.

[–] ichbinjasokreativ@lemmy.world 31 points 2 months ago (1 children)

Exacly. You basically need to flash something like grapheneos on your phone, install linux on your computer and run custom firmware on your router to even have any semblance of privacy

[–] ptz@dubvee.org 6 points 2 months ago (1 children)

Yep.

Every piece of networking gear in my house (except my ONT grrrrr) is running OpenWRT. Which also makes it nice since I can script any changes and push them out.

[–] 0x0@programming.dev 2 points 2 months ago (1 children)
[–] ptz@dubvee.org 2 points 2 months ago

Yeah. I get my wan IP assigned to my router.

[–] sugar_in_your_tea@sh.itjust.works 8 points 2 months ago (1 children)

I use enterprise hardware that has enterprise router firmware. In my case, I use Microtik with RouterOS. If it's good enough for big enterprises, it's probably good enough for me.

[–] ptz@dubvee.org 4 points 2 months ago* (last edited 2 months ago)

I use enterprise gear, but not the original software for it (and sometimes, not even the original purpose). I get it all second hand, and the subscription / licensing is usually non active. I think the only gear I used with the original OS was my Brocade fibre channel switch.

My current router is former Barracuda Load Balancer 340 now running OpenWRT. Cost me $45 and handles everything I need to throw at it and more.

[–] Pacmanlives@lemmy.world 6 points 2 months ago (1 children)

Not a bad way to do it!

I just went down the ubiquity dream machine and a real switch with APs in mesh mode

[–] ptz@dubvee.org 6 points 2 months ago

Nice!

A drunk eBay excursion scored me 20 Aruba AP-105s for $12. Flashing OpenWRT to them was a brute, but they're still going strong.

I originally set them up to mesh on the 5 GHz and provide AP coverage on the 2.4, but since they're PoE and didn't come with adapters, I got rid of the mesh and just have one in every room.

[–] NeoNachtwaechter@lemmy.world 3 points 2 months ago

Me too, me too... :)