We installed Yoics on our DroboShare, but we didn’t ever wind up using it. However, we left it installed. Recently, we had an IT person in our lab, looking at some security issues. He informed us that he could log into our Drobo remotely without providing any username/password information - even though it’s password protected.
I investigated this, and found that if I simply entered the Drobo’s IP address into a browser, I got complete access to the Drobo… and it said “Powered by Yoics.” I de-activated DroboApps (thereby de-activating Yoics), and that solved the problem.
I strongly suggest that other users of Yoics investigate this. It’s a HUGE security problem! Has anyone else experienced this?
I posted about this yesterday on they Yoics forum, but have so far not gotten a response.