Older Wemo smart plugs from Belkin have a vulnerability that allows them to be hacked, according to a blog post from security researchers at Sternum. The Wemo Mini Smart Plug
Older Wemo smart plugs from Belkin have a vulnerability that allows them to be hacked, according to a blog post from security researchers at Sternum. The Wemo Mini Smart Plug V2 (model F7C063) from 2019 is vulnerable to a buffer overflow attack that can be used execute commands remotely.


Basically, the Wemo Mini Smart Plug V2 has a 30 character name limit that can be overwritten, leading to an exploitable memory buffer error. Full details on how the exploit works are available from Sternum.

Belkin told Sternum that it has no plans to update the Wemo Mini Smart Plug V2 because it is at the end of its life after four years and has been replaced with newer models. That leaves many potential Belkin customers vulnerable, as there are likely many of these smart plugs being used in the wild.

Sternum recommends that people prevent the Wemo Mini Smart Plug V2 from accessing the internet and communicating with other devices like the iPhone because of the vulnerability, but the safest bet would be to remove the plugs and replace them with something more secure.
Tags: Belkin, Wemo

This article, "PSA: Older Wemo Smart Plugs Have Vulnerability That Leaves Them Open to Attack" first appeared on MacRumors.com

Discuss this article in our forums

original link


You may also be interested in this

Spotify is booting legacy…

Affected Spotify Premium subscribers can re-subscribe after their account has been moved to the free membership tier. | Nick Barclay / The Verge It’s been over seven years since Spotify

Today in Apple history: i…

On June 16, 2010, Apple reported a massive surge of interest in its upcoming iPhone 4, with 600,000 sales on the first day of preorders. (via Cult of Mac -

Apple announces macOS Son…

Image: Apple Apple has just unveiled macOS Sonoma, the latest version of its desktop operating system, onstage at WWDC 2023. The headline features are support for widgets on the desktop,

How to use your phone as …

If you’re taking your laptop away from the safe environs of your home or office desk and still want to stay online, you’ve got a couple of choices (assuming it

Crime blotter: Finance di…

In the latest Apple Crime Blotter, a store is robbed of iPhones by a man with a box on his head, iCloud evidence is to be used against a politician,

Apple TV+’s ‘City on Fire…

In “City on Fire” on Apple TV+, an NYU student is shot in Central Park on the Fourth of July, 2003. Samantha is alone; there are no witnesses and very

How to pick a smart home …

One connected lock does not a smart home make. If you want to get serious with home automation, start with a smart home platform. When you first get started with

iPhone 16 Pro Max assembl…

Luxshare could see significant growth through 2023 and 2024 as Apple helps it build production lines in India while also offering it iPhone 16 Pro Max production.Luxshare getting help from
X

A whimsical homage to the days in black and white, celebrating the magic of Mac OS. Dress up your blog with retro, chunky-grade pixellated graphics to evoke some serious computer nostalgia. Supports a custom menu, custom header image, custom background, two footer widget areas, and a full-width page template. I updated Stuart Brown's 2011 masterpiece to meet the needs of the times, made it responsive , got dark mode, custom search widget and more.You can download it from tigaman.com, where you can also find more useful code snippets and plugins to get even more out of wordpress.