Older Wemo smart plugs from Belkin have a vulnerability that allows them to be hacked, according to a blog post from security researchers at Sternum. The Wemo Mini Smart Plug
Older Wemo smart plugs from Belkin have a vulnerability that allows them to be hacked, according to a blog post from security researchers at Sternum. The Wemo Mini Smart Plug V2 (model F7C063) from 2019 is vulnerable to a buffer overflow attack that can be used execute commands remotely.


Basically, the Wemo Mini Smart Plug V2 has a 30 character name limit that can be overwritten, leading to an exploitable memory buffer error. Full details on how the exploit works are available from Sternum.

Belkin told Sternum that it has no plans to update the Wemo Mini Smart Plug V2 because it is at the end of its life after four years and has been replaced with newer models. That leaves many potential Belkin customers vulnerable, as there are likely many of these smart plugs being used in the wild.

Sternum recommends that people prevent the Wemo Mini Smart Plug V2 from accessing the internet and communicating with other devices like the iPhone because of the vulnerability, but the safest bet would be to remove the plugs and replace them with something more secure.
Tags: Belkin, Wemo

This article, "PSA: Older Wemo Smart Plugs Have Vulnerability That Leaves Them Open to Attack" first appeared on MacRumors.com

Discuss this article in our forums

original link


You may also be interested in this

This Costco membership de…

Signing up for a new Costco membership just got a whole lot cheaper when you factor in this free $30 Costco Shop Card promotion with a 1-year Gold Star membership.Get

The first A18 Pro benchma…

Macworld The first seemingly legitimate benchmarks of Apple’s new A18 Pro chip have apparently leaked out, and they show a healthy boost in performance that should keep Apple on top

Folding iPhone time? Moto…

We all know Apple doesn’t jump on the latest fads, so while Samsung rushed out foldable smartphones, the Cupertino company has been in no hurry to offer a folding iPhone.

How to use Reactions in v…

From recognizing that you've raised your hand to speak, to for some reason showing you being rained on, macOS Sonoma is transforming the familiar video call. Here's how to use

Future iPhone screens cou…

Apple is continuing to investigate making roller screens for iPhone and iPad, where a user can pull at the ends to make the display large or small as needed.It won't

Check Signed by Steve Job…

An Apple Computer Company check signed by Steve Jobs sold for $106,985 through an auction hosted by RR Auction. The check was filled out and signed by Jobs in 1976,

How to share passwords wi…

Apple has enhanced its iCloud Keychain password manager over the years, and its latest addition allows users to share passwords and passkeys. Here's how to activate the feature in iOS

Ted Lasso finale: 3 tell-…

The Apple TV+ hit series Ted Lasso has wrapped up its third season as of today. Does the season finale tell us anything about the possibility that it could be
X

A whimsical homage to the days in black and white, celebrating the magic of Mac OS. Dress up your blog with retro, chunky-grade pixellated graphics to evoke some serious computer nostalgia. Supports a custom menu, custom header image, custom background, two footer widget areas, and a full-width page template. I updated Stuart Brown's 2011 masterpiece to meet the needs of the times, made it responsive , got dark mode, custom search widget and more.You can download it from tigaman.com, where you can also find more useful code snippets and plugins to get even more out of wordpress.