【】
If you have an web-connected camera, you should change your password ASAP.
For just 188 yuan ($28), you can buy software that would allow you to hack into connected cameras, Chinese state broadcaster CCTV warns.
SEE ALSO:Apple's new acquisition wants to watch you while you sleep (but not in a creepy way)Such software can easily scan for and access vulnerable devices, which are commonly used as baby monitors and surveillance cameras in the home.
Hackers in China have also set up large groups on social networks such as QQ, to offer usernames and passwords to compromised devices.
(Left) A list of users offering a means to hack into webcams; (Middle) A user proffering means to hack into a webcam; (Right) Lewd pictures taken off webcams that are being used to advertise compromised webcamsCredit: Ng Yi Shu/Mashable
(Left) A list of groups where hackers list compromised webcams and software for sale; (Right) A detailed look at one of the top groups.Credit: Ng Yi Shu/MashablE
A list of compromised cameras and login credentials. The filename reads: "If you share, your whole family will die."Credit: Weibo
Download statistics for the various lists.Credit: WeiboLists of up to 200 to 400 compromised cameras and their login credentials are given away each day for free and downloaded by hundreds of people, CCTV reported.
The lists are given away for free, so as to market the software.
Cybersecurity experts said camera owners who don't change the default user IDs or passwords open themselves up to way more danger.
Cameras are fairly easy to breach because many of them use similar firmware, added Eugene Aseev, vice-president of engineering at data protection firm Acronis.
"Once there is a weakness or vulnerability found in this firmware, all these devices [will] start to share this weakness or vulnerability," Aseev told Mashable. Vulnerabilities in firmware for Internet-connected devices led to the rise of the Mirai botnet in September last year.
Users should avoid using default device configurations, and update their devices' firmware frequently.
"Often, devices are designed with convenience in mind rather than security," said Igor Oskolkov, who blogs about cybersecurity at Kaspersky. "A failure to change the password means that everyone knows the exact [IP] address of the camera."
"Once you have unpacked a brand new internet-connected piece of hardware, spend a little time playing with its configuration," Aseev advised.
"Common default unchanged [passwords] on thousands of devices...is a primary flaw that is being leveraged by attackers."
UPDATE: June 22, 2017, 12:36 p.m. SGT Updated with additional statement from Kaspersky.
Featured Video For You
This Lego camera actually works
TopicsCybersecurity
相关文章

Airbnb activates disaster response site for Louisiana flooding
Airbnb has activated its disaster response page following the record-breaking flooding in Louisiana.2026-01-29
9 key predictions for what'll happen in 'Game of Thrones' Season 7
Late June is the absolute worst time in the Game of Thronescalendar.We've had the delicious joy of 12026-01-29
Take a seat at New York's upscale cereal café
Breakfast cereal is an American staple, and now, thankfully, a high-end delicacy.In New York City's2026-01-29
Pokemon Go shouldn't be as good as it is
If you've been in a public space in the past three days, you might have noticed groups of people sta2026-01-29
Did our grandparents have the best beauty advice?
Do our grandparents really know what's best?They're older and wiser, and they have no shortage of ad2026-01-29
Maybe don't try to catch a baseball with a tray full of drinks
Drink trays: Good for carrying beer, bad for catching baseballs.On Saturday, a fan learned the slopp2026-01-29

最新评论