Open dinosn opened 5 years ago
@dinosn According to @grimpy this is already the case.
I'm afraid that this is not the case.
Please find below the scans on 2 networks of 2 separate G8s.
iceblade:~ krasn$ nmap -p 8728 --open xxx.xxx.212.0-129
Starting Nmap 6.40-2 ( http://nmap.org ) at 2018-10-09 15:39 EEST
Nmap scan report for xxx.xxx.212.8
Host is up (0.096s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.212.12
Host is up (0.090s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.212.13
Host is up (0.092s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.212.14
Host is up (0.094s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.212.16
Host is up (0.093s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.212.17
Host is up (0.092s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.212.19
Host is up (0.094s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.212.22
Host is up (0.094s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.212.26
Host is up (0.093s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.212.29
Host is up (0.092s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.212.33
Host is up (0.087s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.212.34
Host is up (0.093s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.212.36
Host is up (0.093s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.212.41
Host is up (0.091s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.212.47
Host is up (0.095s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.212.48
Host is up (0.089s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.212.49
Host is up (0.089s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.212.52
Host is up (0.089s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.212.53
Host is up (0.095s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.212.54
Host is up (0.090s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.212.56
Host is up (0.097s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.212.57
Host is up (0.092s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.212.58
Host is up (0.097s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.212.59
Host is up (0.090s latency).
PORT STATE SERVICE
8728/tcp open unknown
iceblade:~ krasn$ nmap -p 8728 --open xxx.xxx.201.64-254
Starting Nmap 6.40-2 ( http://nmap.org ) at 2018-10-09 15:41 EEST
Nmap scan report for xxx.xxx.201.74
Host is up (0.11s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.201.77
Host is up (0.083s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.201.80
Host is up (0.088s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.201.81
Host is up (0.089s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.201.82
Host is up (0.084s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.201.84
Host is up (0.087s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.201.85
Host is up (0.089s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.201.86
Host is up (0.084s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.201.87
Host is up (0.083s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.201.88
Host is up (0.094s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.201.89
Host is up (0.086s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.201.90
Host is up (0.083s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.201.91
Host is up (0.094s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.201.92
Host is up (0.086s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.201.98
Host is up (0.087s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.201.99
Host is up (0.087s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.201.100
Host is up (0.087s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.201.101
Host is up (0.092s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.201.102
Host is up (0.090s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.201.103
Host is up (0.088s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.201.104
Host is up (0.093s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.201.105
Host is up (0.088s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.201.106
Host is up (0.087s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.201.107
Host is up (0.098s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.201.108
Host is up (0.090s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.201.110
Host is up (0.090s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.201.111
Host is up (0.089s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.201.112
Host is up (0.084s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.201.113
Host is up (0.090s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.201.114
Host is up (0.093s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.201.115
Host is up (0.094s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.201.116
Host is up (0.088s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.201.117
Host is up (0.093s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.201.118
Host is up (0.087s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.201.119
Host is up (0.087s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.201.121
Host is up (0.084s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.201.122
Host is up (0.090s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.201.123
Host is up (0.084s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.201.124
Host is up (0.096s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.201.130
Host is up (0.11s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.201.137
Host is up (0.11s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap scan report for xxx.xxx.201.139
Host is up (0.11s latency).
PORT STATE SERVICE
8728/tcp open unknown
Nmap done: 191 IP addresses (49 hosts up) scanned in 6.62 seconds
Hi,
Attacks on the mikrotik are still taking place as credentials could had been harvested in earlier attempts and re-used at this moment.
The ports of the API interface of the mikrotik ROS are still open publicly.
The access on ports 8728 and 8729 should be also restricted to the ROS and be accessible only from within the environments.