Netgear firmware update collects your IP and MAC addresses

Users need to configure the router manually to stop data transmission

Netgear's latest firmware update to its Nighthawk range quietly adds a feature that automatically collects your IP and MAC addresses.

A post on Netgear's support page reveals the update collects "information regarding the router's running status, number of devices connected to the router, types of connections, LAN/WAN status, WiFi bands and channels, IP address, MAC address, serial number, and similar technical data about the use and functioning of the router, as well as its WiFi network".

Advertisement - Article continues below

In an email to IT Pro, Netgear said that the process of collecting data is "designed to improve the experience with NETGEAR products", and that it "does not track or collect the websites you visit or collect the content of any traffic on your network".

The company also argued that this would help improve the stability of its router range, but many customers are angry at the amount of data being scalped, particularly their IP and MAC addresses, according to forums including this Slashdot thread, with one user writing: "I guess it is time to switch to a different brand."

What has also riled up customers is that this new data-harvesting tactic is strictly opt-out, meaning users need to manually configure their routers to prevent them from remotely sending data to Netgear. Users have also complained that once configured, there is very little indication that data sharing has been turned off.

Advertisement
Advertisement - Article continues below
Advertisement - Article continues below

"The text description and radio buttons for "Router Analytics Data Collection" and "Router Auto Firmware Update" are grayed out, even though they are clickable," wrote one user on Netgear's community forum

The chances are that many customers won't do this, particularly as many people fail to even change default password credentials.

Netgear warned customers last December to turn off select routers, including the Nighthawk R7000, and avoid using them following the discovery of a security vulnerability. The flaw, known as #582384, affected a range of Netgear routers, and allowed hackers to gain remote access to a network. 

This latest firmware update could be an attempt to catch similar sorts of vulnerabilities before they can do damage, although Netgear appears to be risking alienating some customers in the process.

Main image: Netgear Nighthawk R7000 router

Featured Resources

Key considerations for implementing secure telework at scale

Identifying the security risks and advanced requirements of a remote workforce

Download now

The State of Salesforce 2020

Your guide to getting the most from Salesforce

Download now

Fast, flexible and compliant e-signatures for global businesses

Be at the forefront of digital transformation with electronic signatures

Download now

Rethink your cybersecurity strategy for the new world

5 steps to secure the enterprise and be fit for a flexible future

Download now
Advertisement

Recommended

Andrew Daniels joins Druva as CIO and CISO
Cloud

Andrew Daniels joins Druva as CIO and CISO

22 Jul 2020
University of California gets fleeced by hackers for $1.14 million
ransomware

University of California gets fleeced by hackers for $1.14 million

30 Jun 2020
Australia announces $1.35 billion investment in cyber security
cyber security

Australia announces $1.35 billion investment in cyber security

30 Jun 2020
CSA and ISSA form cyber security partnership
cloud security

CSA and ISSA form cyber security partnership

30 Jun 2020

Most Popular

How to find RAM speed, size and type
Laptops

How to find RAM speed, size and type

3 Aug 2020
How to use Chromecast without Wi-Fi
Mobile

How to use Chromecast without Wi-Fi

4 Aug 2020
Police use of facial recognition ruled unlawful in the UK
privacy

Police use of facial recognition ruled unlawful in the UK

11 Aug 2020