Ive been saying for a long time not to trust your cameras, and today this article hit the mainstream news:
source: http://thenewstack.io/snooping-webcam-reveals-security-dangers-internet-things/
Not only should we all take steps to avoid exposing our cameras to the internet, we also should take steps to prevent our cameras from even accessing the internet.. and Foscam is not the only one, everything is doing this crap.
source: http://thenewstack.io/snooping-webcam-reveals-security-dangers-internet-things/
“I had cut off anything that should have caused the camera to ‘phone home’, but it still insisted on sending out UDP 10001 to several different IPs,” posted another user a few days later. “My router blocked the incoming responses, so no conversation was actually created, but my firewall was reporting about 16,000 attempted connections (4,000 to each of four different IPs).” First, this behavior is activated by default, until the user proactively disables it. And second: disabling it doesn’t really work. “Foscam admits that disabling the P2P option doesn’t actually do anything to stop the device from seeking out other P2P hosts online…”
It opens up all Foscam users not only to attacks on their cameras themselves (which may be very sensitive), but an exploit of the camera also enables further intrusions into the home network. Given the seemingly cavalier attitude and the almost certain lack of automatic updates, it is almost certain that these devices are remotely exploitable
Not only should we all take steps to avoid exposing our cameras to the internet, we also should take steps to prevent our cameras from even accessing the internet.. and Foscam is not the only one, everything is doing this crap.
Last edited by a moderator: