Smart Garage Door Opener Vulnerability Allows Remote Hacking

TL;DR Summary
Security researcher Sam Sabetan has discovered a major security hole in the mobile app for Nexx's smart garage door controller, which allows hackers to remotely open connected doors. The vulnerability is due to a shared universal password that applies across all devices and leaks via Nexx's API and firmware. Sabetan also uncovered four other related vulnerabilities that can involve hijacking Nexx's smart plugs and smart alarm products. Despite attempts to contact the company, Nexx has been silent on fixing the issue. Sabetan estimates that over 40,000 devices are impacted and recommends disconnecting the devices and contacting Nexx for remediation steps.
Topics:technology#cybersecurity#iot-devices#nexx#remote-access#security-hole#smart-garage-door-opener
- Do You Have This Smart Garage Door Opener? Disconnect It Now PCMag
- Open garage doors anywhere in the world by exploiting this “smart” device Ars Technica
- Hackers Can Remotely Open Smart Garage Doors Across the World VICE
- Research: Nexx Smart Home Devices Could Get Hacked Gizmodo
- Nexx garage door vulnerability gives hackers control 9to5Google
Reading Insights
Total Reads
0
Unique Readers
0
Time Saved
2 min
vs 3 min read
Condensed
82%
560 → 100 words
Want the full story? Read the original article
Read on PCMag