3 ms·
99.9% of normies have a router NATing all their traffic It takes active effort to expose a camera publicly
by wyager 3mo ago
99.9% of normies have a router NATing all their traffic
It takes active effort to expose a camera publicly
- fc417fc802 3mo agoUnless that camera uses UPnP and has no auth configured by default.
- notatoad 3mo agowhich cameras do this?
- wolvoleo 3mo agoOr admin/1234 which is about 90% of them
- hdgvhicv 3mo agoYou’re saying f the camera will talk to the firewall using a username and password and open a hole/port forward?
- Symbiote 3mo agoI don't think the username as password is required. Open a Bittorrent client and it will try and port forward port 6881 using UPnP.
- hdgvhicv 3mo agoWhich doesn’t matter about the password. If you have a faulty router which allows unauthorised inbound connections then you have a bigger problem than weak credentials
- marysol5 3mo agohuh? The camera pokes the hole in the "firewall" (NAT in 99% of cases, which isn't a firewall, hence why it's so easy for bits of software to poke holes in it. You don't even need to do UPnP, if you're okay with a random port, you can just do STUN.
- wolvoleo 3mo agoNo, I mean the cameras have these settings. Some cameras do also open ports with UPnP but it's rare in my experience. I think these cams are more users who are a bit technical but not too much to realise the implications.
- hdgvhicv 3mo agoOk so aside from some malware running inside your security perimeter what’s the threat? Yes weak passwords are bad, but if nobody can access it it’s not the end of the world.
- wolvoleo 3mo agoWell this very site is why it's bad. And things like Shodan. It's the swiss cheese model. I'm sure most of these people didn't mean to make their cam accessible to the internet. If there had been a unique username/pw they wouldn't have got exposed.