Older Wemo smart plugs from Belkin have a vulnerability that allows them to be hacked, according to a blog post from security researchers at Sternum. The Wemo Mini Smart Plug
Older Wemo smart plugs from Belkin have a vulnerability that allows them to be hacked, according to a blog post from security researchers at Sternum. The Wemo Mini Smart Plug V2 (model F7C063) from 2019 is vulnerable to a buffer overflow attack that can be used execute commands remotely.


Basically, the Wemo Mini Smart Plug V2 has a 30 character name limit that can be overwritten, leading to an exploitable memory buffer error. Full details on how the exploit works are available from Sternum.

Belkin told Sternum that it has no plans to update the Wemo Mini Smart Plug V2 because it is at the end of its life after four years and has been replaced with newer models. That leaves many potential Belkin customers vulnerable, as there are likely many of these smart plugs being used in the wild.

Sternum recommends that people prevent the Wemo Mini Smart Plug V2 from accessing the internet and communicating with other devices like the iPhone because of the vulnerability, but the safest bet would be to remove the plugs and replace them with something more secure.
Tags: Belkin, Wemo

This article, "PSA: Older Wemo Smart Plugs Have Vulnerability That Leaves Them Open to Attack" first appeared on MacRumors.com

Discuss this article in our forums

original link


You may also be interested in this

Apollo’s Christian Selig …

Christian Selig is Apollo’s lone developer and at the center of the fight taking over Reddit. | Image: Christian Selig ‘Reddit has plugged its ears and refuses to listen to

Ford will stick with CarP…

As General Motors plans to phase out CarPlay for its infotainment system, Ford won't so it doesn't risk losing Apple customers.Ford will continue to stick with Apple's CarPlayIn an interview

Apple Releases Public Bet…

Apple today provided public beta testers with updated beta firmware for the AirPods Pro 2 and AirPods 4, allowing them to test the new AirPods features in iOS 26, iPadOS

Power up your iPhone on t…

Belkin's latest wireless travel chargers offer foldable designs and compatibility with iPhone via Qi2. Fast charging wherever you go. (via Cult of Mac - Apple news, rumors, reviews and how-tos)

9to5Mac Daily: June 05, 2…

Listen to a recap of the top stories of the day from 9to5Mac. 9to5Mac Daily is available on iTunes and Apple’s Podcasts app, Stitcher, TuneIn, Google Play, or through our

Apple restarts beta cycle…

Apple has restarted the beta program with macOS Ventura 13.5, which is now available to download for developer testing.Apple releases new macOS betaDevelopers who are part of the beta program

How to scan documents usi…

Converting paper documents into digital formats means you've got backups of your paperwork should you ever need them. It can also help you clear out a substantial amount of clutter

Best 5G business internet…

5G business internet competition in the US continues to ramp up and providers like T-Mobile and Verizon are offering some big incentives to attract customers. AT&T is in the game too but with a
X

A whimsical homage to the days in black and white, celebrating the magic of Mac OS. Dress up your blog with retro, chunky-grade pixellated graphics to evoke some serious computer nostalgia. Supports a custom menu, custom header image, custom background, two footer widget areas, and a full-width page template. I updated Stuart Brown's 2011 masterpiece to meet the needs of the times, made it responsive , got dark mode, custom search widget and more.You can download it from tigaman.com, where you can also find more useful code snippets and plugins to get even more out of wordpress.