Shark vacuum robots have an unpatched flaw that could let attackers access cameras, WiFi passwords, and home maps, researcher claims.

Researcher Tokay0 says SharkNinja failed to fix the issue more than 90 days after private disclosure.

The flaw involves AWS IoT certificates, with 673,000 exposed SharkNinja devices observed in one AWS region.

  • comador @lemmy.world
    link
    fedilink
    English
    arrow-up
    2
    ·
    edit-2
    2 days ago

    When you get to that point, you really need to just hire someone and quit fucking around with shitty wifi enabled products.

    Edit: Being less obtuse, if you really need such a niche feature, at least block it from having Internet access and restrict it to your LAN as there is sincerely zero reason that cannot be labelled as laziness for needing Internet access on a home appliance.

    • Zarobi@aussie.zone
      link
      fedilink
      English
      arrow-up
      3
      ·
      2 days ago

      It’s a lot cheaper, at least where I live. It’s also way more convenient to just put on the robot vacuum mop thing every few weeks. But you do you man