factory reset incident was in 2021, certain WD NAS devices exposed to the internet had an unauthenticated endpoint and someone decided to “be a jerk” and basically hit up the entire IP space looking for these exposed NAS devices and “curl /path/to/pleaseresetanddeletealldata” to each one of them
unrelated to this year’s outage (some claim WD got ransomwared internally) but still shows poor practices in general
Comments
factory reset incident was in 2021, certain WD NAS devices exposed to the internet had an unauthenticated endpoint and someone decided to “be a jerk” and basically hit up the entire IP space looking for these exposed NAS devices and “curl /path/to/pleaseresetanddeletealldata” to each one of them
unrelated to this year’s outage (some claim WD got ransomwared internally) but still shows poor practices in general