Sapphiron
Honorary Master
Disgrunted infrastructure guys can do a lot of damage. These days, I think the bulk of the disgrunted guys will just sell the 0-days on the dark-web and we almost never find out.@OP - you just live with the port scans, it's background noise... it's going to be research scanners (Shodan, Censys), botnets and compromised hosts. They're all connected to the web. Just keep your device up to date and preferably use a trusted device.
I see someone mentioned Ubiquiti... Have a listen here first:
![]()
Ubiquiti – Darknet Diaries
Nickolas Sharp worked for Ubiquiti, a company that makes networking equipment. He noticed that there were some security problems at work. He tried to point them out, but didn't feel like he was being listened to enough. What do you do when the company you work for isn't securing their software...darknetdiaries.com
TLDR:
I'm more a Mikrotik guy, but there are many good devices out there and many I wouldn't touch... Cudy, Totolink, Tenda... (among others)
Make sure your people are happy and healthy. You can only do so much to protect the business from the people "with the keys to the kingdom". Its probably your best security policy.
At least Ubiquity found out and had some logging. I don't think we could say the same from the developers that make and customise the firmware going on the next DP-Link or Huawaddy router bundled by ISPs even have a security team reviewing code.
