Comment on Banana Pi BPI-M7 - More Reasons to Avoid the Raspberry Pi

<- View Parent
AtariDump@lemmy.world ⁨11⁩ ⁨months⁩ ago

They later on made it so you would be required to change the password after the first login.

That’s just good password security and reasonable.

Most people are running those in a home network that is isolated either way. Most people even share their entire hard drives on the network with little to no security and you’re telling me a Pi with SSH access enabled by default is a risk?

See that qualifying word there? “Most”? That’s why they force SSH to be disabled and password changes. If you PERSONALLY can guarantee that no one will EVER put a freshly imaged RPi directly on the internet it doesn’t matter; there’s still a need to change these defaults. I’ve seen the RPi’s deployed in a business environment and I 10000% know that vendors are fscking stupid and would leave default permissions enabled because they’re the lowest bidder.

It’s people like you why we have massive botnets due to default security measures being ignored by major manufacturers.

Good day sir.

source
Sort:hotnewtop