Hacker shouts abuse through baby monitor

EnglishLady

Veteran Expediter
Why would someone even think about doing this? :confused:


A hacker was able to shout abuse at a two-year-old child by exploiting a vulnerability in a camera advertised as an ideal "baby monitor".
ABC News revealed how a couple in Houston, Texas, heard a voice saying lewd comments coming from the camera, made by manufacturer Foscam.

Vulnerabilities in Foscam products were exposed in April, and the company issued an emergency fix.
Foscam said it was unable to provide a statement at this time.

ABC reported that Marc Gilbert and wife Lauren were left shaken when they heard a "British or European accent" coming from the camera.
Mr Gilbert said the voice directed offensive, sexualised words at their daughter Allyson, who was asleep in bed.
The family believed the hacker was able to call the child by her name because it was spelt out on the bedroom's wall.


The two-year-old is deaf, something the couple described as "something of a blessing" in the circumstances.
It is not clear whether the family had updated the camera with the latest software.

The BBC has found evidence of hackers sharing information on how to access insecure Foscam cameras via several widely-used forums.
Using specialist search engines, people can narrow their results by location.

On one forum, internet addresses for cameras - not all made by Foscam - were listed with descriptions such as "school/daycare?" and "kids room".
In April, security firm Qualys uncovered a weakness in Foscam's devices.

The company said that various attack techniques exposed the camera's remote monitoring access - the simplest of which was simply scraping Foscam's website for unique identifying codes for each customer.
Around two out of every 10 Foscam cameras monitored by the researchers were insecure, Qualys said - using just "admin" to log in, and requiring no password.
Foscam is not the only company to find itself the target of hackers. Last year, camera company Trendnet had to rush out an update to fix a security hole that left thousands of cameras exposed.


In June, Foscam issued a fix for some of the issues raised by Qualys. In a blog post, the company said it appreciated the "constructive criticisms and advice".
Visitors to the firm's homepage do not see any notice of the critical upgrade.
The company did however publish a blog post to publicise the patch, and users who had signed up to a firmware update newsletter should have been informed by email

more ..
BBC News - Hacker 'shouts abuse' via Foscam baby monitoring camera
 

LDB

Veteran Expediter
Retired Expediter
That "British or European accent" individual needs to "accidentally" fall down several flights of stairs... on a regular basis.
 

RoadTime

Veteran Expediter
Owner/Operator
Wow. With all those monitor your home while away things out there, I never once thought about hackers. Creepy :eek:
 

Turtle

Administrator
Staff member
Retired Expediter
Every single Internet-connected device is looked at for exploitable hacks. Every one of them. As soon as a new product comes out, throngs want to know, "What can we do with this?" Google's Chromecast was hacked the day it was released. In many respects that's a bad thing, because if anyone can cause problems with the hacks they will. But in most repsects it's a good thing because the vulnerabilities are exposed and corrected, because you know the NSA and FBI are taking full advantage of those hacks. There are Internet-connected TVs with Web cams (so you can video chat) where people, including the FBI and NSA, can stealthily watch you while you watch. There was recently a bill introduced in Congress to deal with that very issue (because it was discovered the FBI and NSA were doing just that to TVs, laptops with Web cams, and even with phones with cameras).
 
Top