dslreports logo
site
 
    All Forums Hot Topics Gallery
spc

spacer




how-to block ads


Search Topic:
uniqs
17
share rss forum feed

OZO
Premium
join:2003-01-17
kudos:2
reply to Juggernaut

Re: Security Flaws in Universal Plug-n-Play: Unplug, Don't Play

said by Juggernaut:

The funny thing is, I can't think of a reason why it should even be there.

What is even funnier - I'm using it for the last decade and never had any security problem with it

As with everything in this life there is a danger and there is a usefulness. Knife is an example. I'm sure that many. many people cut their fingers with knives every day. Nevertheless, they still use it... I think the same is true about UPnP. Take your time and get a knowledge how to use it safely and then ... use it safely
--
Keep it simple, it'll become complex by itself...


Juggernaut
Irreverent or irrelevant?
Premium
join:2006-09-05
Kelowna, BC
kudos:2
Bud, as I've stated, I've never needed it with any prog or device yet. And, I do practice safe hex.

OZO
Premium
join:2003-01-17
kudos:2
Good. I do the same.

Example of just two usages:
* dynamic port assignment - torrent app. New (random) port is forwarded on the router every time it starts. Port is immediately closed when it's done.
* almost static port assignment (I may change it time to time) - SIP server, FreeSWITCH. Achieved convenience is - I change it in one place (SIP server's configuration) only.

Again, IT life is not simple like black and white. It may bring you benefits and desired automation, but one has to learn how to use it safely (because there are always people, who want to exploit everything at their disposal against gullible and naive). Another controversial for some example - I use actively ActiveX without security problems. Or, JavaScript is always on, whatever site I visit (Flash, on the other hand, can be started on my demand only and BTW, on all my computers its elevated privileges are removed, search this forum for my posts how to do it). And at the same time, I don't run any AV products all the time. I simply don't need them, because I do what you're doing -- practice safe hex

The main problem INHO sits on a chair and clicks on any links or buttons it sees...
--
Keep it simple, it'll become complex by itself...


Juggernaut
Irreverent or irrelevant?
Premium
join:2006-09-05
Kelowna, BC
kudos:2
The 'Zombie Surfer'! *Gasp*


trparky
Apple... YUM
Premium,MVM
join:2000-05-24
Cleveland, OH
kudos:2
reply to Juggernaut
I ran the scan myself, I just inputted junk data into the program and it accepted it.