Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.


mdf

mdf

3520 posts

Uber Geek

Trusted

#214474 13-May-2017 13:39
Send private message

Stuff is catching up to Geekzone. Kind of wish they'd asked @sbiddle for a quote!


View this topic in a long page with up to 500 replies per page Create new topic
 1 | 2
freitasm
BDFL - Memuneh
79314 posts

Uber Geek

Administrator
ID Verified
Trusted
Geekzone
Lifetime subscriber

  #1781703 13-May-2017 16:39
Send private message

Brilliant quote, shows why it won't be solved really:

 

 

An Otaki homeowner, who asked not to be named, was identified due to a security camera on her property showing a trailer with her phone number on it.

 

"I'm amazed. I'm lucky that I just have [the cameras] outside. Apart from the trailer sitting there, no one would know where in the world it was, because there's not street names, but people could have street names and they could have identifying factors outside their house."

 

 

What the hell? Didn't the paper just find her because of a sticker on the trailer with her phone number? And she worry about street names?





Please support Geekzone by subscribing, or using one of our referral links: Quic Broadband (free setup code: R587125ERQ6VE) | Samsung | AliExpress | Wise | Sharesies | Hatch | GoodSync 




mattrix
193 posts

Master Geek
Inactive user


  #1781706 13-May-2017 16:52
Send private message

Is this just the cameras with default logins and default non protected streams? If so, this was brought up a good 5+ years ago.

michaelmurfy
meow
13267 posts

Uber Geek

Moderator
ID Verified
Trusted
Lifetime subscriber

  #1781715 13-May-2017 17:33
Send private message

I am not going to comment on this Stuff article.





Michael Murphy | https://murfy.nz
Referral Links: Quic Broadband (use R122101E7CV7Q for free setup)

Are you happy with what you get from Geekzone? Please consider supporting us by subscribing.
Opinions are my own and not the views of my employer.




mdf

mdf

3520 posts

Uber Geek

Trusted

  #1781751 13-May-2017 19:41
Send private message

freitasm:

 

Brilliant quote, shows why it won't be solved really:

 

 

An Otaki homeowner, who asked not to be named, was identified due to a security camera on her property showing a trailer with her phone number on it.

 

"I'm amazed. I'm lucky that I just have [the cameras] outside. Apart from the trailer sitting there, no one would know where in the world it was, because there's not street names, but people could have street names and they could have identifying factors outside their house."

 

 

What the hell? Didn't the paper just find her because of a sticker on the trailer with her phone number? And she worry about street names?

 

 

Yeah, I thought this was a bit like XYZ's naked rear end was shown on camera. XYZ was later quoted as saying, "Well, at least my street name wasn't displayed!"


sbiddle
30853 posts

Uber Geek

Retired Mod
Trusted
Biddle Corp
Lifetime subscriber

  #1781932 14-May-2017 14:30
Send private message

I'm sick of telling people not to set port forwards to CCTV.

 

As far as I'm concerned these days if you're dumb enough to set port forwards (or employ a security that is dumb enough to configure port forwards for you) you deserve your CCTV feeds to be on the Internet.

 

 


mdf

mdf

3520 posts

Uber Geek

Trusted

  #1781944 14-May-2017 15:51
Send private message

Scope for a public service / advertising opportunity? www.geekzone.co.nz/AmISecure (or /IsMySecurityInstallerDumb) to scan the common ports for CCTV, security alarms and other common offenders.


freitasm
BDFL - Memuneh
79314 posts

Uber Geek

Administrator
ID Verified
Trusted
Geekzone
Lifetime subscriber

  #1781946 14-May-2017 15:55
Send private message

The problem is people don't know about port forwarding and network security and they tend to believe what their security installer says. Can't blame this people really.




Please support Geekzone by subscribing, or using one of our referral links: Quic Broadband (free setup code: R587125ERQ6VE) | Samsung | AliExpress | Wise | Sharesies | Hatch | GoodSync 


 
 
 

Move to New Zealand's best fibre broadband service (affiliate link). Free setup code: R587125ERQ6VE. Note that to use Quic Broadband you must be comfortable with configuring your own router.

mdf

mdf

3520 posts

Uber Geek

Trusted

  #1781948 14-May-2017 15:59
Send private message

freitasm: The problem is people don't know about port forwarding and network security and they tend to believe what their security installer says. Can't blame this people really.

 

Yep, totally agree with this. I was more thinking about how to reduce the process of checking to something straightforward. Checking if any ports are open isn't hard, but no-one I know (outside Geekzone) would even know how to begin / what to google for instructions.


richms
28198 posts

Uber Geek

Trusted
Lifetime subscriber

  #1781978 14-May-2017 16:26
Send private message

Dumb $h!+ I have heard from security installers.

 

 

 

"They would need to know your IP address _and_ the port its on"

 

"It has a password you set that makes it secure"

 

"You're safe on a dynamic IP address since it changes all the time"

 

 

 

Edit:

 

Also now I know that the things I saw on conveyers were kiwifruit. Had no idea and thought it was some form of factory. Lol.

 

 

 

Wonder what facebook group they saw the site with those ones on, I saw it posted on crappy electrical recently and commented. But friends saw it on some others. For a while some of the cameras were getting really choppy so I guess lots of people were looking and thrashing their upload.

 

 





Richard rich.ms

sbiddle
30853 posts

Uber Geek

Retired Mod
Trusted
Biddle Corp
Lifetime subscriber

  #1782043 14-May-2017 18:28
Send private message

I started a blog post about this about a year ago when somebody on here started asking questions..And I updated it about 6 months ago when somebody else was complaining about port forwards and CCTV. Maybe I should actually finish it!

 

 


Oblivian
7304 posts

Uber Geek

ID Verified

  #1782072 14-May-2017 19:20
Send private message

With what little knowledge I have on this other than sorting a few routing issues with a mates NVR, I take it it's referring to cameras offering a cloud connect solution and or single IP units with the dodgy chinese-english firmware that they open up

 

Rather than a single point such as an NVR being the risky part with its built in password change requirements and NAT and such


raytaylor
4017 posts

Uber Geek

Trusted

  #1782137 14-May-2017 22:07
Send private message

We get calls every week from customers because our routers are managed so we have to do the port forwards for them. And their security guy telling them to request the port forwards on 80 and 8080 doesnt seem to know about actual security.  

 

I see there are now a few of the newer models of DVR on aliexpress now use a cloud system rather than port forwards so I am thinking of getting customers to request cloud connected models now instead of the ones that require port forwards.





Ray Taylor

There is no place like localhost

Spreadsheet for Comparing Electricity Plans Here


richms
28198 posts

Uber Geek

Trusted
Lifetime subscriber

  #1782142 14-May-2017 22:23
Send private message

I had a cloud one and had a quick play with it.

 

Saw incoming data from the cloud server just by putting in my serial number without even the password being verified so I am not 100% sure how secure they really are. I know with the xmeye ones you can add the DVR to an account by serial number (which there is nothing to check that you really own it in the process) but that only seems to group them.

 

Till someone audits the cloud stuff I have zero faith in that either.





Richard rich.ms

sbiddle
30853 posts

Uber Geek

Retired Mod
Trusted
Biddle Corp
Lifetime subscriber

  #1782170 15-May-2017 07:12
Send private message

Oblivian:

 

With what little knowledge I have on this other than sorting a few routing issues with a mates NVR, I take it it's referring to cameras offering a cloud connect solution and or single IP units with the dodgy chinese-english firmware that they open up

 

Rather than a single point such as an NVR being the risky part with its built in password change requirements and NAT and such

 

 

It's not just cameras - NVR's are just as risky. The issue also isn't just people seeing your cameras, it's the fact that much of the Chinese hardware has such poor code there are well known backdoors for many brands so is also being utilised for DDOS attacks. 

 

There was also even a famous hack a few years ago using NVR's for bitcoin mining.

 

 


jnimmo
1097 posts

Uber Geek


  #1782188 15-May-2017 08:11
Send private message

It's a bit like when your building security company installs a card access system and leaves the card encryption key as the well known default,  hmmm


 1 | 2
View this topic in a long page with up to 500 replies per page Create new topic





News and reviews »

Air New Zealand Starts AI adoption with OpenAI
Posted 24-Jul-2025 16:00


eero Pro 7 Review
Posted 23-Jul-2025 12:07


BeeStation Plus Review
Posted 21-Jul-2025 14:21


eero Unveils New Wi-Fi 7 Products in New Zealand
Posted 21-Jul-2025 00:01


WiZ Introduces HDMI Sync Box and other Light Devices
Posted 20-Jul-2025 17:32


RedShield Enhances DDoS and Bot Attack Protection
Posted 20-Jul-2025 17:26


Seagate Ships 30TB Drives
Posted 17-Jul-2025 11:24


Oclean AirPump A10 Water Flosser Review
Posted 13-Jul-2025 11:05


Samsung Galaxy Z Fold7: Raising the Bar for Smartphones
Posted 10-Jul-2025 02:01


Samsung Galaxy Z Flip7 Brings New Edge-To-Edge FlexWindow
Posted 10-Jul-2025 02:01


Epson Launches New AM-C550Z WorkForce Enterprise printer
Posted 9-Jul-2025 18:22


Samsung Releases Smart Monitor M9
Posted 9-Jul-2025 17:46


Nearly Half of Older Kiwis Still Write their Passwords on Paper
Posted 9-Jul-2025 08:42


D-Link 4G+ Cat6 Wi-Fi 6 DWR-933M Mobile Hotspot Review
Posted 1-Jul-2025 11:34


Oppo A5 Series Launches With New Levels of Durability
Posted 30-Jun-2025 10:15









Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.



Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.