Ecovacs Robot Vacuum Cleaner Hacked by ABC News

https://www.abc.net.au/news/2024-10-04/robot-vacuum-hacked-p…

We hacked a robot vacuum — and could watch live through its camera

The largest home robotics company in the world has failed to fix security issues with its robot vacuums despite being warned about them last year.

Without even entering the building, we were able to silently take photos of the (consenting) owner of a device made by Chinese giant Ecovacs.

And then things got even creepier.

https://www.abc.net.au/news/2024-10-04/scammers-using-system…

Experts say scammers are getting a leg-up from the system that serves us personalised ads

The online ad industry may be providing scammers with the tools to target Australians more efficiently.

A new report reveals how the sale of people's consumer data could be fuelling common scams featuring fake road toll notices or texts purporting to be from AusPost.

Related Stores

ECOVACS
ECOVACS
ABC - Australian Broadcasting Corporation
ABC - Australian Broadcasting Corporation

Comments

  • +10

    reading that title, i thought ABC News hacked the vacuum

    • +6

      According to the article they did.

  • +7

    Can they also then see which spots are more dirty and steer vacuum there?

    • Like VR from the vacuums perspective? Nice.

  • +1

    I have an ecovacs robovac but I have no idea why it would need a camera (mine doesn't have one). Just asking for trouble IMHO.

    • +3

      same reason the torch ap on your phone needs FULL SYSTEM ACCESS

      • -1

        The ads show people watching their pets etc. Seems like a daft use of a vacuum cleaner.

        In fairness, most webcams are probably just as hackable.

    • +1

      Object detection. LiDAR only knows if something is in the way but it doesnt know what it is. Is it a curtain? Or a wall? Also LIDAR cant detect things below the scan line like socks and cables.

    • Apparently helps in dodging all the crap you were too lazy to pick up off the floor. :)
      Why the camera would net internet access, maybe to match crap on the floor to crap in a database?
      Otherwise, to give the usual suspects access to your home.

    • they are little spy bots https://www.abc.net.au/news/2024-10-05/robot-vacuum-deebot-e…

      don't walk around in the nude

  • and you thought you could just leave a huge mess on the floor and get away with it? who do you think you are kidding? the CCP knows …

  • +1

    Missus didn't want one with a camera. She will love this article.

    • She's a keeper.

  • -2

    This was my concern and happy we didn't get one = )
    Recipe for disaster if you ask me. Why would I pay $1,000+ for a potential when I can create one for free!?

  • +4

    This isn't great news, but the vulnerability requiring Bluetooth makes a massive difference. It means that the attacker has to be within wireless range (article mentions 100 or 140m and that's almost with line of sight clearance).

    Still not good at all, but it is so different from the attacker being 'anywhere on the internet' which is the usual story. Literal multiple orders of magnitude in difference.

    Also- camera on a freaking robot vacuum is a dumbass idea. But imo any low security IoT device connected to your trusted LAN is also a dumb idea, and that seems to be widely accepted on this forum already.

    What's the adage about this? The S in IoT stands for Security.

    (Feel free to downvote.)

    • What's the adage about this? The S in IoT stands for Security

      and obviously as there’s no S in IoT, that means that…

      :)

  • Does anyone know how the other brands compare with security?

    • Companies that make this stuff have security fairly low down on their lists.

      As security flaws go, this is a pretty minor one.

Login or Join to leave a comment