Older Wemo smart plugs from Belkin have a vulnerability that allows them to be hacked, according to a blog post from security researchers at Sternum. The Wemo Mini Smart Plug
Older Wemo smart plugs from Belkin have a vulnerability that allows them to be hacked, according to a blog post from security researchers at Sternum. The Wemo Mini Smart Plug V2 (model F7C063) from 2019 is vulnerable to a buffer overflow attack that can be used execute commands remotely.


Basically, the Wemo Mini Smart Plug V2 has a 30 character name limit that can be overwritten, leading to an exploitable memory buffer error. Full details on how the exploit works are available from Sternum.

Belkin told Sternum that it has no plans to update the Wemo Mini Smart Plug V2 because it is at the end of its life after four years and has been replaced with newer models. That leaves many potential Belkin customers vulnerable, as there are likely many of these smart plugs being used in the wild.

Sternum recommends that people prevent the Wemo Mini Smart Plug V2 from accessing the internet and communicating with other devices like the iPhone because of the vulnerability, but the safest bet would be to remove the plugs and replace them with something more secure.
Tags: Belkin, Wemo

This article, "PSA: Older Wemo Smart Plugs Have Vulnerability That Leaves Them Open to Attack" first appeared on MacRumors.com

Discuss this article in our forums

original link


You may also be interested in this

Apple plans to expand and…

Apple plans to expand and revitalize its worldwide chain of retail stores, pushing deeper into China and other parts of Asia while revitalizing established locations in America and Europe. Mark

25 years ago, we met the …

Macworld In 2023, Apple is sitting on top of the world. At times ranked as the most valuable company around, its influence in technology and media–and even some realms beyond–exceeds

WWDC 2023: all the news f…

Illustration by Nick Barclay / The Verge Virtual reality, a bigger MacBook Air, updated OSes, and more are on the docket. WWDC 2023 is going to be a big one

Finally: Adobe Photoshop …

Tuesday marks the first time you can get Adobe Photoshop on iPhone. The company launched free and paid versions of the photo-editing suite. (via Cult of Mac - Apple news,

Rode introduces the PodMi…

Explicitly designed for podcasters and streamers, the PodMic USB by Rode is a versatile microphone that provides effortless plug-and-play functionality, delivering exceptional audio quality.New PodMic USB from RodeBuilding upon the

How to make sure your iPh…

Taking fireworks photos with your iPhone is easy, especially if you plan ahead. These tips will ensure your Fourth of July snaps sparkle. (via Cult of Mac - Tech and

Google Maps Gains New AI …

Google today announced several changes that it is making to the Google Maps platform, including an AI update. Google Maps now provides better at-a-glance information on locations, with the details

Is it safe to use MacBook…

Recommendations to fast charge iPhone (or iPad) usually include picking up the  or similar. But what about using a higher-powered USB-C charger from your MacBook Pro or MacBook Air? Follow along
X

A whimsical homage to the days in black and white, celebrating the magic of Mac OS. Dress up your blog with retro, chunky-grade pixellated graphics to evoke some serious computer nostalgia. Supports a custom menu, custom header image, custom background, two footer widget areas, and a full-width page template. I updated Stuart Brown's 2011 masterpiece to meet the needs of the times, made it responsive , got dark mode, custom search widget and more.You can download it from tigaman.com, where you can also find more useful code snippets and plugins to get even more out of wordpress.