We've all seen this movie: The lights inexplicably start to flicker and a naive homeowner writes it off as just a glitch. But no! There's something... in ... the house.
In the smart home age, that horror scenario could actually come to life — except the intruders aren't angry spirits, they're hackers.
A new report from Check Point Research, a cyber threat intelligence outfit, shows how a vulnerability in a Philips Hue smart lightbulb could allow attackers to gain control over the home or business network of which the bulb is a part.
Philips Hue and other smart lightbulbs allow users to control the lighting with an app or smart assistant. They're convenient and fun (they change colors!), but apparently making innocuous appliances in your home "smart" is not without its downsides.
The assault scenario is truly spooky. Check Point researchers used a previously discovered vulnerability in the smart bulb to hijack it. They then control the bulb's functioning, causing it to become unresponsive or even — gasp — flicker.
Since the bulbs no longer respond to their owner's control, this prompts the user to reset the bulb in the app that controls it. Doing that allows the hackers to spread their malware to the smart home hub between the bulb and the home network (on a popular wireless protocol called ZigBee), which allows it to gain access to the rest of the connected devices on the network. Home: invaded.
Here's a video of how it all goes down.
Check Point Research made the company that owns Philips Hue bulbs, Signify, aware of the threat in November 2019. Bulb owners should have received an automatic update, but can now also manually update their firmware to prevent against this sort of attack.
This scenario only demonstrated the vulnerability of these specific smart bulbs, but Check Point told Mashable that it could shine a light on possible threats from other smart home products.
"The fact that IoT products are connected to a central network means they can serve as a new 'attack vector' and are a means to get right inside the central network and inject it with malicious files," a Check Point Research representative said. "We showed an example of how this works, but the danger is potentially much larger."
Almost makes you wish your home was dumb again...
Copyright © 2023 Powered by
Hackers can hijack Philips Hue smart bulbs to take over your home-寸地尺天网
sitemap
文章
61326
浏览
193
获赞
346
Fitbit has developed a ventilator to help COVID
Just like Dyson and NASA before it, Fitbit has now designed a ventilator in response to the coronaviMemorial Day Weekend 2024 tablet deals: Save on Apple, Samsung, and Amazon tablets
UPDATE: May. 27, 2024, 11:30 a.m. EDT This post has been updated with the latest deals. All the bestSave 20% on Apple AirTags at Amazon
Save $20.01:Apple AirTags are on sale for $78.99. You'll save $20.01 for 20% in savings to help protEarth to Donald Trump: 2016 will be the hottest year on record
The planet is now more than halfway to the line scientists say we can't cross if we're going to avoiMeghan McCain's complaining wedding guest is now a beautiful meme
If you're a guest at someone's wedding, you probably shouldn't insult them in front of thousands ofDuolingo 'kills' its owl mascot Duo. The internet had jokes and memes.
Duolingo, the language-learning app, killed off its owl mascot named Duo on Tuesday in what is assurAmazon deals of the day: Kindle Scribe Essentials Bundle, 50
Amazon deals of the day at a glance: OUR TOP PICK2025 Super Bowl: When to watch, halftime show, commercials, and more
The Super Bowl LIX matchup is set and it's one that should feel familiar: The Kansas City Chiefs wilTim Cook calls out 'senseless killing' of George Floyd in WWDC opening remarks
Tim Cook took the stage this morning at Apple's Steve Jobs Theater in Cupertino, California to talkYouTube news livestreams you can watch for free right now
The only thing better than watching the news for free is having all the free news from all channelsHow to use Discord on PS5
Curious about how one uses Discord on PS5? One of the joys of modern online gaming is that you can (Kendrick Lamar Super Bowl halftime show cameos: See the full list
Kendrick Lamar is headlining the Apple Music Super Bowl LIX Halftime Show, but he wasn't the only stGoogle says China and Iran tried to hack Biden and Trump's campaigns
Google has announced it has identified state-sponsored hacking attempts upon both Biden and Trump'sBest free online courses from MIT
TL;DR: A wide range of online courses from MIT are available to take for free on edX. You can find aPlayStation State of Play: How to watch and what to expect
E3 is dead, but video game companies will still take some time this summer to show us what's coming