Just in:
Checkout.com and Tabby Collaborate to Enhance BNPL Services in UAE and Saudi Arabia // Brazilian President Seeking Support From China And Russia To Meet Trump’s Threat // Events for remote multinational IT teams: trends, challenges and solutions // Dubai Advances Autonomous Taxi Services with Global Tech Partnerships // Kraken Bolsters Canadian Presence with Regulatory Approval and Leadership Appointment // Ripple’s RLUSD Stablecoin Enhances Cross-Border Payments and Gains Kraken Listing // US Tariffs Threaten India’s Gems and Jewellery Exports // Enviro-Hub Signs LOI to Divest Waste Recycling and Property Units in Strategic Pivot // CPI General Secretary D Raja Underlines Principled Unity Of All Communists To Fight RSS-BJP // EU Antitrust Decision on ADNOC’s Covestro Acquisition Expected by May 12 // Trump’s Sweeping Tariffs Set to Reshape Global Trade Dynamics // Shenglong Electric showcases two AI-powered products in OFC 2025 to redefine smart electricity use // Damac’s Edgnex Data Centers Acquires Finland’s Hyperco to Expand Nordic Presence // Eric Trump Ventures into Bitcoin Mining Following Bank Account Closures // Google Addresses Pixel Weather Widget’s Outdated Forecasts // Absa Group to Establish Dubai Office Amid Strengthening Africa-Gulf Investment Ties // Proton Enhances Drive and Docs Services Amid Linux User Anticipation // Trump’s 26% Tariff Escalates US-India Trade Tensions // Dubai Advances Autonomous Taxi Deployment with Strategic Partnerships // e& PPF Telecom Group Completes €825 Million Acquisition of Serbia Broadband //

9 Issues Make Samsung SmartCam Vulnerable To Hackers, Security Experts Say

ADVERTISEMENT

The popular Samsung SmartCam IP cameras have been affected by a security flaw that could make the devices prone to hijacking and be exploited by remote attackers.

The flaw was discovered by a hacking group called the Exploitee.rs. The group discovered a local server vulnerability that could be used to gain root access to the device.

The hack can be done by injecting a command file into a web script while using the device’s “iWatch” webcam monitoring service to execute commands remotely as the root user.

Samsung SmartCam’s History

The Samsung SmartCam is a cloud-enabled IP camera that allows people to view live or recorded video from any location. The device is used in real-time monitoring of babies, pets, or old people, and is also used to improve home and business security. The product was originally developed by Samsung Techwin but was later sold to the South Korean conglomerate Hanwha Group.

This is not the first time that security flaws were discovered in the Samsung camera device. Earlier, the company was forced to disable the local administration panel to address the flaws that were reported in the web interface of various SmartCam models in the past few years.

Issues Detected On The Samsung IP Camera

Aside from the security breach that the Exploitee.rs exposed in a blog post, the Pen Test Partners also conducted a test on the Samsung SNH-6410BN device to explore its vulnerabilities even further. Here’s what they found:

1. The device does not make use of transport encryption, so one has to secure protocols whenever possible.

2. The device allows only one web service user account, so a breach could lead to full control of the device’s functionality.

3. An attacker can connect and take over the device if the owner is unaware of the existence of the device’s web interface.

4. An attacker can remotely reset the password and take over the device.

5. The device firmware is not secure, making it prone to reverse engineering.

6. The device has only a single system user, which allows easy root access.



7. A weak password can be easily compromised with the device’s use of a password hashing algorithm.

8. The debug functionality cannot be used because it is still in a release build.

9. Command injection as root is possible because user input is seen as trusted and taken through to a system call.

For additional information on the security issues that may be affecting your Samsung camera, we highly recommend that you visit the Pen Test Partners’ report to learn more.

© 2016 Tech Times, All rights reserved. Do not reproduce without permission.

(Via TechTimes)


Notice an issue?

Arabian Post strives to deliver the most accurate and reliable information to its readers. If you believe you have identified an error or inconsistency in this article, please don't hesitate to contact our editorial team at editor[at]thearabianpost[dot]com. We are committed to promptly addressing any concerns and ensuring the highest level of journalistic integrity.


ADVERTISEMENT
Just in:
EU Antitrust Decision on ADNOC’s Covestro Acquisition Expected by May 12 // Eric Trump Ventures into Bitcoin Mining Following Bank Account Closures // Google Addresses Pixel Weather Widget’s Outdated Forecasts // Trump’s Sweeping Tariffs Set to Reshape Global Trade Dynamics // Trump’s 26% Tariff Escalates US-India Trade Tensions // US Tariffs Threaten India’s Gems and Jewellery Exports // Damac’s Edgnex Data Centers Acquires Finland’s Hyperco to Expand Nordic Presence // CPI General Secretary D Raja Underlines Principled Unity Of All Communists To Fight RSS-BJP // CoinList Reopens U.S. Token Sales Amid Eased Regulatory Climate // Absa Group to Establish Dubai Office Amid Strengthening Africa-Gulf Investment Ties // e& PPF Telecom Group Completes €825 Million Acquisition of Serbia Broadband // Proton Enhances Drive and Docs Services Amid Linux User Anticipation // Enviro-Hub Signs LOI to Divest Waste Recycling and Property Units in Strategic Pivot // PolyU establishes Otto Poon Research Institute for Climate-Resilient Infrastructure with support from Otto Poon Charitable Foundation // HKPC Achieves Remarkable Accomplishments at Hannover Messe 2025 // Galaxy Macau™ Presents: ANDREA BOCELLI Live in Concert – A Soul-Stirring Spectacle // Galaxy Macau Presents Luxurious Celebration of Renewal at Banyan Tree Macau with Michelin-starred Chef and Bartender from Asia’s 50 Best Bars // Checkout.com and Tabby Collaborate to Enhance BNPL Services in UAE and Saudi Arabia // Dubai Advances Autonomous Taxi Deployment with Strategic Partnerships // Trump’s Tariffs Deal Severe Blow to Developing Nations //