• Enoril@jlai.lu
    link
    fedilink
    English
    arrow-up
    38
    ·
    14 hours ago

    yeah, a lot of PR effort for Bambu while the reality is slightly different.

    An example: they say: we didn’t patch the security hole (the user agent “chech”) because the user experience would have been affected blablabla…

    Well, they introduced this security hole on linux BECAUSE they deployed the new mandatory network “plugin” (that you are forced to use because: it’s automatically installed and it’s mandatory to print even locally) without providing a working solution for all their linux customers when deploying it.

    Yes! They didn’t implement a real authentication solution for their own linux implementation AND they didn’t answer to their linux customers who had the software broken for MONTHS.

    And them providing this user agent hack solution months later allowed anybody to understand how it worked without retro engineering their network plugin (something the article forgot to mention but it was the main attack vector of bambu against the developer threateninghim to go to federal jail, something they also forgot to mention).

    Great user experience mindset here. Breaking their printer to introduce a mandatory connectivity plugin (reminder: linux is officially supported on the marketing pages) and threatening those who try to fix it using just what the license allows them to do.

    I suspect the DDOS attack they had on their cloud service is more linked to their change of mind regarding this mandatory network plugin.

    It could be all the linux client trying to download their network plugin but failing and retrying in loop. That wouldn’t surprise me following the user agent choice.

    Or people unhappy. After all, they changed the terms of the contract after users bought the printer. Really a Dark Vader style of user experience here!

    If you want to avoid this kind of amateurish/parasitic behavior, buy the original: Prusa.

    I’ve one printer from them since many years that I upgrade each few years. Currently, I’m waiting for a sale for the upgrade kit to the Core+

      • Enoril@jlai.lu
        link
        fedilink
        English
        arrow-up
        4
        ·
        9 hours ago

        Yes they are expensive but the fact that you have an official (and supported) upgrade path possible for my little printer bought more than a decade ago is really recommendable. And I love mounting it myself. You learn a lot about the product during this process.

      • Enoril@jlai.lu
        link
        fedilink
        English
        arrow-up
        3
        ·
        9 hours ago

        ha yes, it’s retro in my native tongue but reverse in English. Well, I keep it because i find this mistake funny :)