The Huawei B593 LTE discussion thread

LOL. :p Maybe we'll find another way yet. I'm perplexed why they removed it from the firmware.
 
LOL. :p Maybe we'll find another way yet. I'm perplexed why they removed it from the firmware.


Ja nee wragtig, I am only technical on hardware, not language/code orientated.
(My brain has an auto shut down on things like that, it reminds me of history in school)

I am still on my original firmware, I have tried to update but nothing new available.
And to get hold of Huawei attention is like breaking into a bank ;)
 
Last edited:
In other B593 related news to the thread...

After finding out that my closest tower is Cell C, I poped in my Cell C sim card and set the B593 to 3G to test signal:
RSSI -35 dBm
RSRP -60 dBm
ECIO -4 db
I could not do a speed test as I did not buy a data bundle yet... but I can remember from a previous test they were reasonably fast on 3G using the B593-601. Glad this model came out. (3G fallback)

However on the topic of data, I went to all the network's sites today to get pricing and Cell C is expensive unless you buy a Giga Huge bundle.

MTN sell the B593u-12 for R2999 (black in colour)
According to Voda site, they only offer 15Mbps LTE speed (30mbps Max)
 
Last edited:
I'm having a problem with my B593-501 router. When I first received it I popped in my prepaid T-Mobile sim card and it worked fine and was able to connect but I just recently added a postpaid sim card and the router won't recognize the sim card. The status states "No Sim Card". Is there anything I need to do with my postpaid sim card? I know with my prepaid one I had to make an account PIN whe I first activated it but I was never asked to create one for my postpaid one. Also, when I use my prepaid sim it states "PIN disable". If anyone can help I would greatly appreciate it.
 
Tried the FTP exploit quickly.
I can create user accounts (with arbitrary names + passwords) for use on the B593's FTP server.
I think this is a time to give up. This router is completely unbalanced package, beefing up remote access security and forgetting about basic functionality. It is shipped with hidden master SSH password which is not accessible nor changeable by the user. Now, if SSH is also accessible from the WAN interface, it raise various concerns of security and purpose of such design.

In summary, stay away from B593. Let them know you don't want it.
 
Unfortunately the next best alternative, the ZTE MF253, isn't any better as there isn't a model which caters for all operators. From what I can see, it's TM 2300MHz only. It's also open source and has even worse support than Huawei.

I'm a bit lost with sajunky's dismissal of the B593 as "junk". First we were trying to find the Cell_ID and now there are security concerns...is that it?

The B593 can go behind other security devices so it shouldn't be an issue ito. security. As far as the Cell_ID is concerned, I'm comfortable relying on RSSI/RSRP/RSRQ (which is consistent once locked to a cell) and if they change, I'm obviously on another cell.
 
Last edited:
The B593 can go behind other security devices so it shouldn't be an issue ito. security.
Either I don't understand what you wrote here, or you don't understand how important is this issue. I personaly don't feel comfortable if someoe knows secret password to access my device remotely.
 
What will they do? Disable your internet? From there they can go no further into my* network.

*Said generally, since I don't make use of security appliances.
 
Last edited:
What will they do? Disable your internet? From there they can go no further into my* network.

*Said generally, since I don't make use of security appliances.
Now I am sure you don't understand the issue. Person who knows secret SSH password can do everything with your Internet data. Such a person can do phishing (forging DNS server setting and redirecting your traffic in order upload malware to computers on your LAN), monitor your traffic, even reprogram device with special spyig firmware, etc. Disabling Internet/device temporary or permanent - of course - not really security concern.
 
I'm no networking expert but surely something can be done to take care of that?

Then again, I think this is being taken to the extreme. Yes, if you're a government employee, secret agent or corporate, perhaps don't use this device.
 
I'm no networking expert but surely something can be done to take care of that?
Then don't take a stand. Surely you can do something, but you are trying in reverse - to promote such products.
 
I think this is a time to give up. This router is completely unbalanced package, beefing up remote access security and forgetting about basic functionality. It is shipped with hidden master SSH password which is not accessible nor changeable by the user. Now, if SSH is also accessible from the WAN interface, it raise various concerns of security and purpose of such design.

Just to be clear, I haven't yet managed to exploit either of the rumoured back doors, ie the "FTP-exploit" or the "Ping-exploit", on a B593s-601 running firmware version V200R001B270D00SP00C00 (dated 20 Dec 2013).
Both exploits have been shown to exist on some of the other/earlier B593 firmware versions.

Also, all attempts so far have been from the LAN side. Access from the WAN side may well be blocked by the B593's firewall.
 
Both exploits have been shown to exist on some of the other/earlier B593 firmware versions.
I don't talk about exploits. I am about purpose of hidden master SSH password. If it is in purpose (which I don't doubt for a moment), then obviously router's internal firewall is also prepared to pass remote requests.
 
... I am about purpose of hidden master SSH password. If it is in purpose (which I don't doubt for a moment), then obviously router's internal firewall is also prepared to pass remote requests.

Understood. To put it in perspective :

1. There is a possibility that the B593s-601 - with this version of firmware - will allow access by SSH from LAN side. This has not been demonstrated by us yet and to be fair, may not exist.
2. If such access is possible, it may use an as-yet unknown password.
3. If the B593 allows such access from the LAN side, then it may also allow such access from the WAN side.
4. If it does allow such back-door access, the purpose may be malicious.

Huawei have often been accused of having such nefarious intentions - read this for example.
But as in that article, the "bad guys" are not actually Huawei themselves, but more the NSA.

One could argue that if such back-door vulnerabilities do indeed exist in the B593, then they are just as likely to exist in the beloved B683 (and indeed any Huawei wireless device).

If one is paranoid about being surveilled via weaknesses in Huawei devices, then one should probably be using a different brand of device for a wireless internet connection. But one can't stop there, of course - Huawei wireless devices will be found in just about every base-station in SA. One would need to get rid of all of those too!
 
Last edited:
I need to find a Confucius saying to post at this point.

Edit: how about "Better a diamond with a flaw than a pebble without"?

Moving on...
 
Last edited:
Huawei have often been accused of having such nefarious intentions - read this for example.
But as in that article, the "bad guys" are not actually Huawei themselves, but more the NSA.
I agree on #1 to #3, but can't argue who 'bad' guys are, I don't know. Many things are designed on the event of future war, some other affect our lives now. It is not about vulnerability or 'weakness', it is about design. They take preference on hidden access to your device and have no space for Cell_ID indicator. This is what I am talking about.
 
"The B593 conspiracy thread" - can someone create this?

Edit: sarcasm is often a bad idea.
 
Last edited:
"The B593 conspiracy thread" - can someone create this?
We have a thread. It is about extraordinary expensive device with limited functionality (in addition to hidden master password for remote access). Limitations are so serious, that to properly allign roof antenna people are adviced to borrow less expensive LTE device.
 
Last edited:
Top
Sign up to the MyBroadband newsletter
X