Skip to main content

Your Seagate hard drive may be at risk for severe vulnerabilities

wireless seagate hard drives threatened by root password vulnerabilities plus hero right hi res 4975x4975 copy
Image used with permission by copyright holder
As a warning to users of Seagate’s line of wireless hard drives, a group of researchers at Tangible Security has discovered a security hole in a few specific Seagate wireless drives.

The vulnerability, which can reportedly provide unauthorized users with root access to the drive, is said to activate undocumented Telnet services using a default username and password combo. Telnet, a simple command line procedure, actually allows attackers to log in to someone else’s computer over an Internet or local network connection.

Anyone who opts to exploit this flaw could, quite effortlessly, dictate your hard drive as their own, enabling them to steal files or even to deploy malicious attacks against other people’s computers from your hard drive. Especially concerning is that both the default username and password required for root access is simply the word ‘root,’ making the barrier of entry for aggressors distressingly low.

Another hole spotted by the research firm allegedly allows an unrestricted capability to download files when within the parameters of a device’s wireless network. This could prove detrimental in the case where the attacker is located nearby. And a third flaw permits attackers to upload any file they’d like to the affected wireless hard drive. This, of course, isn’t limited to potentially hazardous files used to brick the devices attached to the drive or even the drive itself.

Fortunately, Seagate has already issued a fix, with help from Tangible Security, to the susceptibility, which seems to have affected those with either a Seagate Wireless Plus Mobile Storage, Seagate Wireless Mobile Storage, or a LaCie Fuel purchased between now and October 2014.

On the downside, however, Tangible has reported that other Seagate products may also be afflicted by the flaw.

“With products from large vendors such as Seagate, there tend to be numerous product names for basically the same product under the same vendor’s name or another vendor,” writes the research firm. “Tangible Security cannot enumerate all of the named products as well as Seagate. Other named products may be affected.”

If you’re using a wireless Seagate hard drive donning either firmware version 2.2.0.005 or 2.3.0.014, Seagate has made available an update to version 3.4.1.105 that repairs these vulnerabilities. To check if your drive is at-risk, it’s recommended that you search for a firmware update using Seagate’s Download Finder. Make sure to do it soon, as Tangible Security claims that this uncompromising vulnerability has been active for at least a week now and is sure to become more infectious as time goes by without action taken.

Editors' Recommendations

Gabe Carey
Former Digital Trends Contributor
A freelancer for Digital Trends, Gabe Carey has been covering the intersection of video games and technology since he was 16…
Four months later, Intel CPU stability issues remain
Intel's 14900K CPU socketed in a motherboard.

It's been over four months since the first reports of instability in Intel's top CPUs started cropping up, and we are yet to see a fix. Although Intel has been working with its partners on delivering updates that would address the problem, the company itself had to admit in a recent community post that it still hasn't found the root cause.

Meanwhile, hardware testers are finding that even using Intel's recommended workarounds still ends up in crashes and unstable performance -- and the only solutions that seem to work are things that you'll have to settle for.

Read more
What to do if the Wi-Fi option isn’t showing in Windows 11
Missing Wi-Fi icon in Windows 11.

A missing Wi-Fi icon can make getting online a bit tricky. If your PC or laptop definitely has a Wi-Fi receiver connected, or has built-in Wi-Fi and it's not giving you the option of turning it on, you've got a Wi-Fi problem we'll need to fix. There are a few different causes for this problem, so there are a few potential fixes, too.

Here's how to fix your missing Wi-Fi icon so you can get back online.

Read more
This Dell G15 gaming laptop is normally $1,050 — today it’s $750
Dell G15 (2023) sitting on a coffee table.

It seems that more and more video games are getting PC releases these days, and we’re all about that! But when you’re buying a laptop with the intention of using it exclusively for MMORPGs and other graphically demanding genres, you’ll want to make sure you’re getting a machine that’s built to perform for at least the next several years. Fortunately, Dell laptop deals tend to be a great way to save some cash while investing in a powerful gaming setup.

Right now, you can purchase the Dell G15 Gaming Laptop for just $750. That’s $300 off its normal price, and this is no lackluster laptop folks.

Read more