Older Wemo smart plugs from Belkin have a vulnerability that allows them to be hacked, according to a blog post from security researchers at Sternum. The Wemo Mini Smart Plug
Older Wemo smart plugs from Belkin have a vulnerability that allows them to be hacked, according to a blog post from security researchers at Sternum. The Wemo Mini Smart Plug V2 (model F7C063) from 2019 is vulnerable to a buffer overflow attack that can be used execute commands remotely.


Basically, the Wemo Mini Smart Plug V2 has a 30 character name limit that can be overwritten, leading to an exploitable memory buffer error. Full details on how the exploit works are available from Sternum.

Belkin told Sternum that it has no plans to update the Wemo Mini Smart Plug V2 because it is at the end of its life after four years and has been replaced with newer models. That leaves many potential Belkin customers vulnerable, as there are likely many of these smart plugs being used in the wild.

Sternum recommends that people prevent the Wemo Mini Smart Plug V2 from accessing the internet and communicating with other devices like the iPhone because of the vulnerability, but the safest bet would be to remove the plugs and replace them with something more secure.
Tags: Belkin, Wemo

This article, "PSA: Older Wemo Smart Plugs Have Vulnerability That Leaves Them Open to Attack" first appeared on MacRumors.com

Discuss this article in our forums

original link


You may also be interested in this

Apple’s super-fast M3 chi…

Macworld The M2 generation of Macs hasn’t yet finished rolling out, with a 15-inch M2 MacBook Air and potentially an M2 Ultra Mac Pro expected to debut at Apple’s upcoming

It’s impossible to …

Due to lengthy delays in parts processing and steep costs, third-party iPhone repair providers say that there is no practical way that they can compete with Apple's repair chain.Right-to-Repair After

Emergency SOS via Satelli…

Apple has opened up Emergency SOS via Satellite to two more countries, with iPhone 14 users in Australia and New Zealand now able to get help in a dire situation

Google releases affordabl…

At its annual I/O conference on Wednesday, Google unveiled several new items including the Pixel 7a that has some of the same features of the Pixel 7 while introducing new

Daily deals: $999 M2 MacB…

Today's top deals include up to 65% off electric scooters, $45 off a Thule Gauntlet MacBook Pro sleeve, 43% off an Apple Watch Series 7, up to 92% off Samsung

Lowest price ever: Apple&…

On the heels of the $499 Mac mini deal we spotted earlier this week, Apple retailers are now slashing the price of the 512GB model to $679, the lowest price

Beats Studio Buds+ With N…

Apple's rumored Beats Studio Buds+ have already arrived to at least one Best Buy location, according to a photo shared by tech enthusiast and former leaker Ben Geskin. The box

Travel like a pro: unlock…

Get the most from your summer travel experiences with the 2023 Travel Hacker Bundle featuring a lifetime subscription to Rosetta Stone, now only $159.99 with coupon.Save on Rosetta Stone.The Travel
X

A whimsical homage to the days in black and white, celebrating the magic of Mac OS. Dress up your blog with retro, chunky-grade pixellated graphics to evoke some serious computer nostalgia. Supports a custom menu, custom header image, custom background, two footer widget areas, and a full-width page template. I updated Stuart Brown's 2011 masterpiece to meet the needs of the times, made it responsive , got dark mode, custom search widget and more.You can download it from tigaman.com, where you can also find more useful code snippets and plugins to get even more out of wordpress.