this post was submitted on 18 Dec 2023
480 points (97.4% liked)
Technology
59091 readers
3545 users here now
This is a most excellent place for technology news and articles.
Our Rules
- Follow the lemmy.world rules.
- Only tech related content.
- Be excellent to each another!
- Mod approved content bots can post up to 10 articles per day.
- Threads asking for personal tech support may be deleted.
- Politics threads may be removed.
- No memes allowed as posts, OK to post as comments.
- Only approved bots from the list below, to ask if your bot can be added please contact us.
- Check for duplicates before posting, duplicates may be removed
Approved Bots
founded 1 year ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
Didn't they just have a security incident where people could access other people's full unifi account including devices?
Correct but that's only if you enable the remote connection through ubiquity, if you have that turned off its all local.
Ah, I wasn't aware there was an option to keep it local. Does that keep your entire site from being remote manageable or just the camera system?
My understanding is that it's all or nothing, but I'm not complete sure.
The security issue you mentioned I think only affected when they handle access to the cameras. I think you can set up a VPN and then turn off remote access on the NVR, so it seems possible to avoid that issue.
That being said that's a lot of work for something they should have handled securely in the first place and doesn't give me much confidence about their security in general.
It's an interesting read since the cause of the issue was something to do with a database change that caused an overlap of groups.