Announcement

Collapse
No announcement yet.

Homeseer security issue - Needed to upgrade HS3!

Collapse
X
 
  • Filter
  • Time
  • Show
Clear All
new posts

    #16
    yes ofcourse, here an example.

    H*.O!m#e^s(e;e*R


    Originally posted by reidfo View Post
    Is your password sufficiently complex and long though? I've had passwords cracked that I thought were hard to figure out, but with scripts running the majority of attacks they can try millions of combinations in little time. I suggest a good random password (long, including digits and symbols) and a good, secure password manager application so you don't have to create memorable passwords.
    Preferred -> Jon's Plugins, Pushover, Phlocation, Easy-trigger,
    Rfxcom, Blade Plugins, Pushbullet, homekit, Malosa Scripts




    HS3Pro 4.1.14.0 on windows 10 enterprise X64 on hp quadcore laptop 8 GB.

    Comment


      #17
      HomeSeer Version: HS3 Standard Edition 3.0.0.548
      Linux version: Linux auto 4.15.0-72-generic #81-Ubuntu SMP Tue Nov 26 12:20:02 UTC 2019 x86_64 x86_64 x86_64 GNU/Linux
      Number of Devices: 484 | Number of Events: 776

      Enabled Plug-Ins: 3.0.0.13: AirplaySpeak | 2.0.61.0: BLBackup
      3.0.0.70: EasyTrigger | 1.3.7006.42100: LiftMaster MyQ
      4.2.3.0: mcsMQTT | 3.0.0.53: PHLocation2 | 0.0.0.47: Pushover 3P
      3.0.0.16: RaspberryIO | 3.0.1.262: Z-Wave

      Z-Net version: 1.0.23 for Inclusion Nodes
      SmartStick+: 6.04 (ZDK 6.81.3) on Server

      Comment


        #18
        Just saying... I believe the security fix was in .318.

        It was for this reason I moved to it almost a year ago now...

        Robert
        HS3PRO 3.0.0.500 as a Fire Daemon service, Windows 2016 Server Std Intel Core i5 PC HTPC Slim SFF 4GB, 120GB SSD drive, WLG800, RFXCom, TI103,NetCam, UltraNetcam3, BLBackup, CurrentCost 3P Rain8Net, MCsSprinker, HSTouch, Ademco Security plugin/AD2USB, JowiHue, various Oregon Scientific temp/humidity sensors, Z-Net, Zsmoke, Aeron Labs micro switches, Amazon Echo Dots, WS+, WD+ ... on and on.

        Comment


          #19
          Originally posted by langenet View Post
          Just saying... I believe the security fix was in .318.

          It was for this reason I moved to it almost a year ago now...

          Robert
          That explains how Malosa got hacked. He was running 3.0.0.315.
          HS4 Pro, 4.2.19.16 Windows 10 pro, Supermicro LP Xeon

          Comment


            #20
            Reading from a previous post he made I believe he is running a version of HS3 on the the Zee S2. I'd strongly recommend he upgrades quickly. My Chinese friends have gone to pastures new quite a while back.

            Comment


              #21
              That fix was in .312

              https://forums.homeseer.com/showthread.php?t=176440

              Changes from 3.0.0.297 to 3.0.0.312:
              .
              .
              * Fixed security issue when logging in
              Last edited by zwolfpack; March 17, 2018, 01:20 AM.

              Comment


                #22

                Comment

                Working...
                X