Older Wemo smart plugs from Belkin have a vulnerability that allows them to be hacked, according to a blog post from security researchers at Sternum. The Wemo Mini Smart Plug
Older Wemo smart plugs from Belkin have a vulnerability that allows them to be hacked, according to a blog post from security researchers at Sternum. The Wemo Mini Smart Plug V2 (model F7C063) from 2019 is vulnerable to a buffer overflow attack that can be used execute commands remotely.


Basically, the Wemo Mini Smart Plug V2 has a 30 character name limit that can be overwritten, leading to an exploitable memory buffer error. Full details on how the exploit works are available from Sternum.

Belkin told Sternum that it has no plans to update the Wemo Mini Smart Plug V2 because it is at the end of its life after four years and has been replaced with newer models. That leaves many potential Belkin customers vulnerable, as there are likely many of these smart plugs being used in the wild.

Sternum recommends that people prevent the Wemo Mini Smart Plug V2 from accessing the internet and communicating with other devices like the iPhone because of the vulnerability, but the safest bet would be to remove the plugs and replace them with something more secure.
Tags: Belkin, Wemo

This article, "PSA: Older Wemo Smart Plugs Have Vulnerability That Leaves Them Open to Attack" first appeared on MacRumors.com

Discuss this article in our forums

original link


You may also be interested in this

25 years ago, Apple intro…

Macworld In 2023, Apple is sitting on top of the world. At times ranked as the most valuable company around, its influence in technology and media–and even some realms beyond–exceeds

Apple releases first deve…

Following the conclusion of the previous beta cycle, Apple has now made available the initial developer betas for iOS 16.6 and iPadOS 16.6.New betas for iOS and iPadOSDevelopers who are

The new, more affordable …

The new Apple Pencil is available to order starting today.

iPhone 17 Pro models migh…

Get an early look at the iPhone 17 Pro and Pro Max with leaked CAD drawings highlighting significant design change. (via Cult of Mac - Apple news, rumors, reviews and

Tim Cook visits Cannes fo…

Apple CEO Tim Cook has been spotted in Cannes, attending the film festival at the same time the Martin Scorsese film "Killers of the Flower Moon" made its debut.Lily Gladstone

Apple and Major League Ba…

Apple and MLB today announced the August schedule for “Friday Night Baseball,” a weekly doubleheader available to Apple TV+ subscribers.

How to connect two or mor…

Macworld While the higher-end MacBooks with M1 Pro and M2 Pro and M1 Max and M2 Max chips support multiple external displays, Apple’s lower-end range of MacBooks that use a

New Mac Pro, Mac Studio a…

The initial batch of 2023 Mac Studio, Mac Pro, and 15-inch MacBook Air preorders have started making their way into the hands of customers. (via Cult of Mac - Tech
X

A whimsical homage to the days in black and white, celebrating the magic of Mac OS. Dress up your blog with retro, chunky-grade pixellated graphics to evoke some serious computer nostalgia. Supports a custom menu, custom header image, custom background, two footer widget areas, and a full-width page template. I updated Stuart Brown's 2011 masterpiece to meet the needs of the times, made it responsive , got dark mode, custom search widget and more.You can download it from tigaman.com, where you can also find more useful code snippets and plugins to get even more out of wordpress.