Question one, if you revert back to "FLASH to the last released firmware" would it clear the exploited box ? I get that the Firmware has a hole that MAY be exploited, but could this be stopped by closing a network hole in your own network ? I'm not looking at pointing fingers or debating who's responsibility this is … I manage S2 and S4 box's and I have yet to see any of them exploited . so the next question is, how are these box's being set up so that they can get access to the outside world to be exploited ?
It's a stratum exploit in older versions of cgminer & others, not in the firmware itself. The only way to fix it is by upgrading cgminer. Also, just because you haven't noticed it - it doesn't mean it hasn't/isn't happening
Guess I should set up wire shark to check it out ...