WeSearch

Anyone on the Internet Can Ring Your Doorbell

·35 min read · 0 reactions · 0 comments · 11 views
#iot security#smart home#vulnerability#reverse engineering#firmware
Anyone on the Internet Can Ring Your Doorbell
⚡ TL;DR · AI summary

A security researcher discovered critical vulnerabilities in a cheap smart doorbell purchased from Temu, revealing that the device and its backend platform are highly insecure. The flaws allow attackers to hijack doorbell feeds, spoof doorbell rings with fake video, and extract home Wi-Fi passwords. These issues stem from systemic weaknesses in the Naxclow platform, which powers multiple rebranded devices and apps.

Key facts
Original article
ABGEO's Personal website
Read full at ABGEO's Personal website →
Opening excerpt (first ~120 words) tap to expand

Anyone on the Internet Can Ring Your Doorbell06/05/2026 10:3539 min read (8229 words)#Security #IoT #Reverse Engineering #Hardware Hacking #Firmware Updates#2026-05-06. I opened a coordination case with CERT/CC’s VINCE covering the findings below. CVE assignment will go through that process.2026-05-07. Naxclow contacted me one day after this post went live, acknowledged the report, and started their internal review process.Naxclow’s reply, the day after publication.Recently I bought a smart doorbell off Temu, the Chinese marketplace that has been gaining popularity worldwide over the past couple of years. I wanted to know how secure the cheap connected hardware sold on that platform actually is.

Excerpt limited to ~120 words for fair-use compliance. The full article is at ABGEO's Personal website.

Anonymous · no account needed
Share 𝕏 Facebook Reddit LinkedIn Threads WhatsApp Bluesky Mastodon Email

Discussion

0 comments