Look. My advise is to never trust Ubiquiti. Wait 2 years before you try a particular product. You are the experiment. Every software release is alpha. They are a shit company. If you want better WiFi get a Reyee Ruijie router, set it to AP mode and pay a fraction of the price. Dream machine. They called a product “dream machine”. They want to be apple, but the tech is shit. #ubiquiti #wifi #tech
CISA warns of max severity Ubiquiti flaws exploited in attacks

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) is warning of hackers actively exploiting flaws in Ubiquity UniFi OS and Lantronix serial-to-ethernet servers.

BleepingComputer

A critical CISA warning reveals Ubiquiti UniFi OS and Lantronix EDS5000 devices are under active attack. Max severity flaws (CVSS 10.0) are being chained for unauthenticated remote code execution, allowing attackers to create rogue admin accounts and fully compromise network infrastructure. Patching is urgent.

https://www.tpp.blog/1yc2rjr

#cybersecurity #cisa #ubiquiti

🤖 This post was AI-generated.

CISA Warns of Actively Exploited Ubiquiti Flaws

The US Cybersecurity and Infrastructure Security Agency (CISA) has issued a warning that hackers are actively exploiting security flaws in Ubiquiti UniFi OS devices, posing a significant threat to system security. Federal agencies have just three days to apply crucial updates or recommended fixes to avoid potential breaches.

https://osintsights.com/cisa-warns-of-actively-exploited-ubiquiti-flaws?utm_source=mastodon&utm_medium=social

#Ubiquiti #Cisa #KnownExploitedVulnerabilities #Cve202634908 #Cve202634909

CISA Warns of Actively Exploited Ubiquiti Flaws

Learn how CISA warns of actively exploited Ubiquiti flaws and what you can do to protect your systems - apply security updates now and stay safe from cyber threats.

OSINTSights
CRITICAL UniFi OS vulnerabilities (CVE-2026-34908/09/10) allow remote, unauthenticated attackers to bypass auth and execute commands (pre-5.0.8). Exploited in the wild. Patch ASAP: https://radar.offseq.com/threat/critical-ubiquiti-vulnerabilities-in-attackers-cro-da638630474e46d7 #OffSeq #infosec #Ubiquiti #vulnerability
U.S. CISA adds Ubiquiti UniFi OS and Lantronix EDS5000 plugin flaws to its Known Exploited Vulnerabilities catalog

U.S. CISA adds Ubiquiti UniFi OS and Lantronix EDS5000 flaws to its Known Exploited Vulnerabilities catalog.

Security Affairs

@Level1Techs A good example for #Govware integrated in devices are #Ubiquiti #UniFi which rely on #Cavnium, a #Fab that has said capabilites "enabled" as per #PRISM documents of the #NSA...

- So yeah, don't trust anything you didn't #DIY out of #OpenSource #Hardware & #Software and got professionally audited by multiple competing security firms of diverging location.

Insert the "Router Chain Meme" here for good measure!

My Ubiquiti UDM 2020 appears to be dead. After the latest .15 update it was experiencing period drops of the management interface. RAM usage was much lower after the software upgrade, but CPU usage was much higher. With the recent heat wave and the fact that I have it in a small cabinet in the living room, I think it bit the dust. Now, no internet and shopping a replacement.

I put it in the fridge for 20 minutes to cool it down, and it's not still not powering on.

#Ubiquiti #networking #router

In prep for upcoming travel I pulled out my #Ubiquiti #UniFi Travel Router. They made some welcome improvements since I last tried it.

I can finally broadcast a second SSID. Yes it seems unnecessary but certain people like to bring an Echo Dot and it's a pain to join to a new network, then reconnect to our IOT network after.

The other interesting change is it can Bind To Site with my CloudKey. It couldn't before, I think due to lack of Teleport. (My remote access is WireGuard via pfSense.)

Ah crap 😩 my #Ubiquiti U6 Mesh died