NodeSphere
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
RSS Bot@lemmy.bestiver.seMB to Lobste.rs@lemmy.bestiver.seEnglish · 1 month ago

Petlibro: Your Pet Feeder Is Feeding Data To Anyone Who Asks

bobdahacker.com

external-link
message-square
2
link
fedilink
  • cross-posted to:
  • netsec
  • pulse_of_truth@infosec.pub
5
external-link

Petlibro: Your Pet Feeder Is Feeding Data To Anyone Who Asks

bobdahacker.com

RSS Bot@lemmy.bestiver.seMB to Lobste.rs@lemmy.bestiver.seEnglish · 1 month ago
message-square
2
link
fedilink
  • cross-posted to:
  • netsec
  • pulse_of_truth@infosec.pub
How I found critical vulnerabilities in Petlibro smart pet feeders allowing complete account takeover via broken OAuth, access to anyone's pet data, device hijacking, and private audio recordings - and how they're still leaving the auth bypass active for 'legacy compatibility' two months later.

Comments

  • Sarcasmo@piefed.social
    link
    fedilink
    English
    arrow-up
    2
    ·
    1 month ago

    Pretty sure my pet feeder isn’t doing this but I’ll ask her about it.

Lobste.rs@lemmy.bestiver.se

lobsters@lemmy.bestiver.se

Subscribe from Remote Instance

You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !lobsters@lemmy.bestiver.se
lock
Community locked: only moderators can create posts. You can still comment on posts.

RSS Feed of lobste.rs

Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 24 users / day
  • 110 users / week
  • 381 users / month
  • 612 users / 6 months
  • 1 local subscriber
  • 320 subscribers
  • 1.57K Posts
  • 95 Comments
  • Modlog
  • mods:
  • patrick@lemmy.bestiver.se
  • RSS Bot@lemmy.bestiver.se
  • UI: 0.19.12
  • BE: 0.19.15
  • Modlog
  • Instances
  • Docs
  • Code
  • join-lemmy.org