Camera Pwned❤️
329 subscribers
4 photos
1 video
1 link
Download Telegram
Channel created
Channel photo updated
Whoops, my bad! 😢
20164
ENG: Many people likely didn’t realize what those messages on the cameras meant. Don’t worry - I can’t see your cameras or anything like that (and I wouldn’t, for ethical reasons). Still, it’s clear that some people who’ve noticed those messages are just script kiddies misusing research tools. (The screenshot is an example; the actual message differs.)

RUS: Многие, вероятно, не поняли, что означают эти сообщения на камерах. Не волнуйтесь — я не вижу ваших камер или чего-то подобного (и не хотел бы видеть по этическим соображениям). Тем не менее, очевидно, что некоторые люди, которые заметили эти сообщения, — просто скрипт-кидди, злоупотребляющие исследовательскими инструментами. (Скриншот — пример; фактическое сообщение отличается.)
15🔥1🤡1
ENG: Fun fact: there have actually been cases where intercom systems were accidentally hacked. At first, it might not seem like a big deal-maybe the door doesn’t open, or the intercom makes weird noises. Annoying, sure. But here’s where it gets creepy: what’s stored inside these systems. We’re talking databases full of people’s faces-often conveniently labeled with phone numbers. Not so funny now, right? It's actually kind of unsettling.

The real issue isn’t the intercoms themselves (they’re usually pretty secure). It’s the incompetence of the people installing them and uploading sensitive, unanonymized data.

RUS: Интересный факт: на самом деле были случаи, когда системы домофонов были случайно взломаны. Поначалу это может показаться не таким уж большим делом — может быть, дверь не открывается, или домофон издает странные звуки. Раздражает, конечно. Но вот где становится жутко: что хранится внутри этих систем. Я говорю о базах данных, полных лиц людей — часто удобно помеченных номерами телефонов. Теперь уже не так смешно, правда? На самом деле это немного тревожит.

Настоящая проблема — это не сами домофоны (они обычно довольно безопасны). Это некомпетентность людей, которые их устанавливают и загружают конфиденциальные, неанонимные данные.
16😱2
ENG: Aside from Hikvision and Dahua, there are plenty of other Chinese cameras-the kind that run through apps like Yoosee, EZVIZ, and the like. The thing is, they’re so easy to set up, even your grandma could do it, and they’re dirt cheap. The catch? Hikvision actually opens ports (making setup harder and support patchy), but these other cameras connect straight to... Chinese servers. If you can see your camera, so can the server-and whoever controls it. I’m not saying your data’s being sold or used to train AI. But let’s be real: you’re not the only one with access.

RUS:
Помимо Hikvision и Dahua, есть много других китайских камер — тех, которые работают через приложения вроде Yoosee, EZVIZ и т. п. Дело в том, что их так легко настроить, что даже ваша бабушка справится, и они очень дешевые. В чем подвох? Hikvision на самом деле открывает порты (что усложняет настройку и делает поддержку нестабильной), но эти другие камеры подключаются напрямую к... китайским серверам. Если вы видите свою камеру, то и сервер тоже может ее видеть — и тот, кто ею управляет. Я не говорю, что ваши данные продаются или используются для обучения ИИ. Но давайте будем реалистами: вы не единственный, у кого есть доступ.
17
Hi, just to be clear - I have no malicious intentions and I'm not trying to exploit or attack anything.
I just scan for devices with open ports that are publicly accessible from the internet. When I find one, I'll send a short warning message so the owner knows their printer (or network) is exposed and needs to be secured.
You should close those open ports or ask your IT guy to do it. Updating the firmware probably won't fix the main issue, but it's still worth doing.
Better safe than sorry!
Contact us
3102🥰1🤨1
Camera Pwned❤️
ENG: Aside from Hikvision and Dahua, there are plenty of other Chinese cameras-the kind that run through apps like Yoosee, EZVIZ, and the like. The thing is, they’re so easy to set up, even your grandma could do it, and they’re dirt cheap. The catch? Hikvision…
Heard about some fresh vulnerabilities on XMeye. Not 100% sure they're real and I'm not gonna poke at them anyway (no OSD access).
That said, I'd seriously consider switching to some decent cameras instead.
4