SSH Weak Key Exchange Algorithms Enabled on UniFi Wireless Access Points

Turritopsis Dohrnii Teo En Ming tdtemccnp at gmail.com
Thu Oct 27 13:02:21 UTC 2022


Subject: SSH Weak Key Exchange Algorithms Enabled on UniFi Wireless Access
Points

Good day from Singapore,

I have discovered that UniFi Wireless Access Points are powered by Busybox.

Vulnerability scanning of my client's corporate network shows SSH weak key
exchange algorithms enabled on UniFi wireless access points.

Article: SSH WEAK KEY EXCHANGE ALGORITHMS ENABLED
Link:
https://www.virtuesecurity.com/kb/ssh-weak-key-exchange-algorithms-enabled/

According to the above article, we must make changes to
/etc/sshd/sshd_config, especially the KexAlgorithms directive.

However, when I putty/SSH into Busybox, I cannot find the file
/etc/sshd/sshd_config. What SSH server is running inside Busybox?

How can I make changes to the SSH server within Busybox so that I can
disable the SSH weak key exchange algorithms?

Please advise.

Thank you.

By the way, I also noticed that Hikvision Face Recognition Terminal Door
Access Systems are also powered by Busybox.

I am doing this for an investment company at Keppel Road, Singapore.

Regards,

Mr. Turritopsis Dohrnii Teo En Ming
Targeted Individual in Singapore
Blogs:
https://tdtemcerts.blogspot.com
https://tdtemcerts.wordpress.com
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.busybox.net/pipermail/busybox/attachments/20221027/23829ef5/attachment-0001.html>


More information about the busybox mailing list