Shark vacuum robots have an unpatched flaw that could let attackers access cameras, WiFi passwords, and home maps, researcher claims.
Researcher Tokay0 says SharkNinja failed to fix the issue more than 90 days after private disclosure.
The flaw involves AWS IoT certificates, with 673,000 exposed SharkNinja devices observed in one AWS region.


It can be “easy” depending on your definition of easy. For the average person, no, not easy. For a tech person, maybe, depending on their interests and proficiencies. Easiest is likely using a firewall on the router blocking all outbound and inbound WAN connections (for the MAC address associated with the device, assuming it doesn’t try to rotate MAC addresses or hop on any open WiFi networks around you). Some devices will straight refuse to work if you do this, however. So you have to do research and be careful about which products you buy.
If you want a vacuum, see the valetudo link I posted in another comment. It has some options for this that you can load local only custom firmware (and integrate it with home assistant).