Baby monitor exploit allowed hackers to creep on your toddlers
Reported today on TheNextWeb
For the full article visit: https://thenextweb.com/plugged/2020/02/27/baby-monitor-vulnerability-spy-hackers/
Baby monitor exploit allowed hackers to creep on your toddlers
Goo goo gaga?
You might want to hold off copping this baby monitor to keep an eye out on your newly born - unless you're fine with unknowingly streaming your toddler to total strangers on the internet.
A severe vulnerability in iBaby Monitor M6S allowed hackers to snatch any saved pics or footage, access a live feed of the camera, and even glean your personal information, an investigation by PCMag and Bitdefender has found. The worst part? Anybody with an M6S and the necessary network skills can breach cloud-stored content by every other device of the same type.
[Read: Amazon Engineer: 'Ring should be shut down immediately and not brought back']
Each time your baby moves, the monitor records footage and uploads it to the cloud before forwarding it to you. This data is protected with a secret key and access ID key, but the setup is a lot less secure than it sounds. The keys don't simply give the monitor access to your own data, but to everyone else's too.
The flaws don't end there, though. "Using what's called an In