device-identification

1 article
sort: new top best
clear filter
0 7/10

This article reverse-engineers the UniFi inform protocol (port 8080) and discovers that while the AES-128-CBC encrypted payload requires per-device keys, the first 40 bytes of every packet are unencrypted and contain the device's MAC address at bytes 8-13. This plaintext MAC allows routing of inform traffic without decryption, enabling multi-tenant UniFi controller hosting on shared infrastructure.

UniFi Ubiquiti DigitalOcean AES-128-CBC DHCP Option 43 STUN MongoDB coturn
tamarack.cloud · baconomatic · 5 days ago · details · hn