Did I get hacked (Android TV - MiBox) - If so, what next?

by phonehog2

Hello everyone, gonna try to make this brief.

I have a MiBox on Android 8.x. I like the older, simpler builds.

Last week or so, I kept getting a random RSA Key prompt. I searched for the MAC, couldn't find it in my network, but finally hit OK on it a few days ago, thinking who could be trying to hack me and why?

Anyhow, this morning, my TV, Box turned off unexpectedly. Came on in a few minutes, by itself and it looked like it had be factory reset on the set up screen!

Before I could figure out what was happening, I saw the RSA Key box pop up again, and this time, the checkbox was checked by itself and it felt like someone else was in control!

I quickly killed the power source of the box, disconnected the Ethernet cable.

Question is, did I actually get infiltrated? How serious is it, if I did? What actions should I take to be secure my network first and can I use this box again?

Please help!

RogueKnight_Arturis

In the future, if you don't recognize a prompt, don't hit "OK" on it. Doesn't matter if it's a security prompt or a popup on a website. I know that doesn't help much for this particular case, but maybe it can head off trouble next time.

triplebeamz

It sounds like the standard ADB debugging prompt, this shows when an unknown device tries to open an ADB session to your device.

The fact it prompted it in itself shows that no one else was in control of your device . If they had been in control of that device they would have just closed the prompt.

ADB is only accessible through your local area network or through USB. I'm not sure what's so important about your Android TV device that someone needs to be camping out around your house ( after successfully breaking into your wifi )then trying to break into a tv box.... its just not plausible

mindoversoul

New versions contain security fixes.

I would never use that box again without updating it with all available updates.

Patching computers and devices is very important, more than your UI preferences.

pavichokche

I'd say reset the box manually/reflash the ROM on it, but keep using it. Also do check your router settings, maybe there is something you can tweak to improve security on your network. Also if you're not actively using it, disable USB/wireless debugging from the developer settings.

phonehog2

AN UPDATE EVERYONE:

I just carefully turned my box on and honestly, it just seems like I was forced an OS update that's long overdue by 2 years or so.

I revoked the USB permissions from the box and literally nothing is changed with the box, nor has anything peculiar happened...

Do you guys think it literally was a self-inflicted scare and I was just forced an update by the manufacturer?

Has anyone gotten their MiBox forcefully updated? Mine was on Android 8 from like 2 years ago!

phonehog2

Another update guys:

Looks like another MiBox user went through this... You guys think I'm fine?

https://www.reddit.com/r/MiBox/comments/oqdxyo/auto_update/?utm_medium=android_app&utm_source=share