Older Wemo smart plugs from Belkin have a vulnerability that allows them to be hacked, according to a blog post from security researchers at Sternum. The Wemo Mini Smart Plug
Older Wemo smart plugs from Belkin have a vulnerability that allows them to be hacked, according to a blog post from security researchers at Sternum. The Wemo Mini Smart Plug V2 (model F7C063) from 2019 is vulnerable to a buffer overflow attack that can be used execute commands remotely.


Basically, the Wemo Mini Smart Plug V2 has a 30 character name limit that can be overwritten, leading to an exploitable memory buffer error. Full details on how the exploit works are available from Sternum.

Belkin told Sternum that it has no plans to update the Wemo Mini Smart Plug V2 because it is at the end of its life after four years and has been replaced with newer models. That leaves many potential Belkin customers vulnerable, as there are likely many of these smart plugs being used in the wild.

Sternum recommends that people prevent the Wemo Mini Smart Plug V2 from accessing the internet and communicating with other devices like the iPhone because of the vulnerability, but the safest bet would be to remove the plugs and replace them with something more secure.
Tags: Belkin, Wemo

This article, "PSA: Older Wemo Smart Plugs Have Vulnerability That Leaves Them Open to Attack" first appeared on MacRumors.com

Discuss this article in our forums

original link


You may also be interested in this

Best MagSafe wallets for …

One of the best ways to use MagSafe on iPhone is to make it carry your wallet. It means you don’t have to remember to pick up multiple items every

AirTags used to uncover f…

AirTags and Find My have revealed how items donated by Mexicans for earthquake relief in Turkey were instead resold in Mexico City markets.An AirTag on a keyringIn February, Apple's AirTags

The Mac’s slow descent in…

Macworld Welcome to our weekly Apple Breakfast column, which includes all the Apple news you missed last week in a handy bite-sized roundup. We call it Apple Breakfast because we

Best Buy expands its Upgr…

Best Buy is expanding its Upgrade+ program to include a wider range of Apple products, and the newest additions are iPad Pro and Apple Watch Ultra.Best Buy adds more products

9to5Mac Daily: May 31, 20…

Listen to a recap of the top stories of the day from 9to5Mac. 9to5Mac Daily is available on iTunes and Apple’s Podcasts app, Stitcher, TuneIn, Google Play, or through our

Turn a Video into a GIF o…

Animated GIFs have become a staple of the internet. Invented in 1987, the looping, soundless video clips can be found everywhere online, from social media networks to messaging platforms. They're

Apple announces winners o…

Today, Apple proudly unveiled the winners of its annual Apple Design Awards, celebrating 12 best-in-class apps and games.

Latest Hermes AirPods Pro…

Hermes revealed an expensive leather AirPods Pro 2 case and a separate lanyard that brings extreme luxury to your earbuds.Hermes Case for AirPods Pro 2Apple's AirPods Pro 2 aren't too
X

A whimsical homage to the days in black and white, celebrating the magic of Mac OS. Dress up your blog with retro, chunky-grade pixellated graphics to evoke some serious computer nostalgia. Supports a custom menu, custom header image, custom background, two footer widget areas, and a full-width page template. I updated Stuart Brown's 2011 masterpiece to meet the needs of the times, made it responsive , got dark mode, custom search widget and more.You can download it from tigaman.com, where you can also find more useful code snippets and plugins to get even more out of wordpress.