

which means can change the DNS servers in the router for a mitm Attack if the default password hasn’t been changed (and nobody changes that)
or if the device can succesfully spoof DHCP offers. perhaps crashing the real one, or just being faster somehow





Because it’s plausible to keep using it that way, and because they are protecting their asses