[Chugalug] 58, 000 Security Camera Systems Critically Vulnerable To Attackers

The current consumer broadband model pretty much requires a PAT
configuration with IPv4.  We've been doing it for 20 years or so now,
so we've made our applications smarter to get around it (for the most
part, we still need FTP ALG in most cases for instance), but CGN is
going to be a whole new kind of pain.  Nat on each end plus a NAT in
the middle, I see a whole lot of broken IPv4 based shit headed our
way.  The next battle will be with the ISPs to give you a /48 worth of
IPv6 instead of a single /64.  Hell, I guess we have to win the give a
/64, not a /128 battle first.....

>> The bad guys have been winning this particular war for at least
>> the past 5 years.  And I mean the really bad guys, not the script
>> kiddie punk kind, the Estonian Mafia kind.....
> Got *5* calls today from the guy claiming to be from technical
> support trying to get me to install software on my Windows
> computer.

I *never* get this guy.... I have a handful of VMs just waiting for
the opportunity to capture one of these shit-heads in action.  And
it's not like I can firewall off my DID the way I do my network, so
it's really not my fault, I keep getting the Cruise and Credit
Services phone SPAM, don't know why I can't get the Microsoft guy :(

>> Using your modem as a modem and not a router with a proper
>> firewall at your border will prevent that nonsense also.
> Yes.

Just because your network devices *can* plug and play, doesn't mean
they should :)



