Older Wemo smart plugs from Belkin have a vulnerability that allows them to be hacked, according to a blog post from security researchers at Sternum. The Wemo Mini Smart Plug
Older Wemo smart plugs from Belkin have a vulnerability that allows them to be hacked, according to a blog post from security researchers at Sternum. The Wemo Mini Smart Plug V2 (model F7C063) from 2019 is vulnerable to a buffer overflow attack that can be used execute commands remotely.


Basically, the Wemo Mini Smart Plug V2 has a 30 character name limit that can be overwritten, leading to an exploitable memory buffer error. Full details on how the exploit works are available from Sternum.

Belkin told Sternum that it has no plans to update the Wemo Mini Smart Plug V2 because it is at the end of its life after four years and has been replaced with newer models. That leaves many potential Belkin customers vulnerable, as there are likely many of these smart plugs being used in the wild.

Sternum recommends that people prevent the Wemo Mini Smart Plug V2 from accessing the internet and communicating with other devices like the iPhone because of the vulnerability, but the safest bet would be to remove the plugs and replace them with something more secure.
Tags: Belkin, Wemo

This article, "PSA: Older Wemo Smart Plugs Have Vulnerability That Leaves Them Open to Attack" first appeared on MacRumors.com

Discuss this article in our forums

original link


You may also be interested in this

Apple to Donate Towards L…

In response to devastating wildfires in the Los Angeles, California area this week, Apple said it will be donating towards recovery efforts on the ground. "The devastation caused by the

Today in Apple history: A…

On December 23, 2005, Apple filed a patent application for its iconic "slide to unlock" gesture for the iPhone. (via Cult of Mac - Tech and culture through an Apple

LG’s A2 entry-level OLED …

The A2 is about as affordable as it gets for an LG OLED TV. | Image: LG It’s the Friday before the Fourth of July weekend, which means a couple

Next-Generation Apple Wat…

Back in September 2022, Apple launched the Apple Watch Ultra, which is the company’s most advanced and rugged… The post Next-Generation Apple Watch Ultra to Feature 3D-Printed Parts appeared first

Beats Studio Buds+ With N…

Apple's rumored Beats Studio Buds+ have already arrived to at least one Best Buy location, according to a photo shared by tech enthusiast and former leaker Ben Geskin. The box

Apple Vision Pro first lo…

What does the Apple Vision Pro look like? Imagine a pair of ski goggles. The fanciest, most sci-fi ski goggles you’ve ever seen. There, you’ve got it. Apple just announced

How to set up recurring A…

Apple Cash users are getting a new feature with iOS 17 that lets them set up recurring payments for shared expenses. Here's how to enable it.Set up a cash allowance

Video: Testing Focal̵…

French company Focal is known for its range of high fidelity audio systems, and it recently came out with its first set of wireless headphones with Active Noise Cancellation, the
X

A whimsical homage to the days in black and white, celebrating the magic of Mac OS. Dress up your blog with retro, chunky-grade pixellated graphics to evoke some serious computer nostalgia. Supports a custom menu, custom header image, custom background, two footer widget areas, and a full-width page template. I updated Stuart Brown's 2011 masterpiece to meet the needs of the times, made it responsive , got dark mode, custom search widget and more.You can download it from tigaman.com, where you can also find more useful code snippets and plugins to get even more out of wordpress.