TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

CVE-2020-28936 – Risks from symmetric encryption in UniFi’s inform protocol

2 pointsby andrewnicolaldeover 4 years ago

1 comment

andrewnicolaldeover 4 years ago
I am absolutely shocked that the initial encryption key is literally the md5sum of &quot;ubnt&quot;.<p><a href="https:&#x2F;&#x2F;gchq.github.io&#x2F;CyberChef&#x2F;#recipe=MD5()&amp;input=dWJudA" rel="nofollow">https:&#x2F;&#x2F;gchq.github.io&#x2F;CyberChef&#x2F;#recipe=MD5()&amp;input=dWJudA</a><p>I wonder what the folks at HostiFi (cloud hosted UniFi controller software) might be thinking right now...<p>edit: Looks like they&#x27;ve seen it. Their response is here: <a href="https:&#x2F;&#x2F;twitter.com&#x2F;_rchase_&#x2F;status&#x2F;1329949952408244231" rel="nofollow">https:&#x2F;&#x2F;twitter.com&#x2F;_rchase_&#x2F;status&#x2F;1329949952408244231</a>
评论 #25204939 未加载