←back to thread

287 points jamesbvaughan | 1 comments | | HN request time: 0s | source
Show context
xyst ◴[] No.41083506[source]
Why do speakers even expose a web api in the first place? It’s just easily available without any security?

Hope this person segmented this device away from other devices. The lack of basic security in the IoT space is astounding to me.

replies(3): >>41083589 #>>41083868 #>>41084691 #
1. denysvitali ◴[] No.41084691[source]
I was looking for this comment. Basically he managed to get a sort of unauthenticated R/W access to the file system.

This is really concerning