Home Hub 4000 port 22 is open !

Felice
Contributor

Hello, I run a port scanner daily. Few days ago my scanner reported a new port open on my Home Hub 4000 router public IP, ssh port 22. It looks like Bell enabled sshd service on my router remotely without my knowledge and consent. Called support but was waste of time, never received call back from next level tech. Anyone know how to disable sshd on this router or block this port ? It's a vulnerability. 

0 24 6,765
24 REPLIES 24

I used https://www.shodan.io/ to see if this website had anything on my ip address. 

I also connected to port 22 from my work network (non bell internet connection)

Vanadiel
Community All-Star
Community All-Star

So if you use this it shows port 22 open?

I am a Community All-Star and customer. I'm here to help by sharing my knowledge and experience. My views on Bell and the Community Forum are my own and not the views of Bell or any of its affiliates.

yes this is shown as opened on this website too.

Vanadiel
Community All-Star
Community All-Star

Interesting. Must the the USB file sharing service that is using that port.

I am a Community All-Star and customer. I'm here to help by sharing my knowledge and experience. My views on Bell and the Community Forum are my own and not the views of Bell or any of its affiliates.

euh no... 

this is public facing ssh port. I guess bell is using it to remotely manage the equipement... but this doesn't make sense considering it's opened to everyone. they should limit connection to their own internal network. 

Vanadiel
Community All-Star
Community All-Star

What happens when you log into it?

I am a Community All-Star and customer. I'm here to help by sharing my knowledge and experience. My views on Bell and the Community Forum are my own and not the views of Bell or any of its affiliates.

Prompt asking for a password. Problem is..: it’s using a old version dating back to 2020. I don’t trust bell with the security of this device 

kevincox
Contributor II

This seems to have gotten worse. As of last night hairpin access is now also affected. So whereas before inside of my network I could access port 22 of my WAN IP and it was only intercepted from outside, now it is intercepted both inside and out.

kevincox
Contributor II

Nevermind, I forgot that I turned on my VPN...

kevincox
Contributor II

This isn't resolved...