Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

It’s worth mentioning that, people found that Synology also has a default encryption password (same password for all devices):

https://blog.elcomsoft.com/2019/11/synology-nas-encryption-f...

The OpenVPN also had a hidden password:

https://www.cvedetails.com/cve/CVE-2014-2264/

The funny thing is that, they didn’t even bother to choose a longer password (the password is synopass). Even if people haven’t found them, an attacker brute forcing these passwords would easily find them.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: