Live data from Hacker News

Hackers Got Inside a Flock Camera

wired.com

131–140 of 275 posts

Re: Hackers Got Inside a Flock Camera

#131
post #90

Earlier quoted context omitted.

so is my all-passwords.txt file on my desktop

My passwords are in an encrypted block in a text file that can be unencrypted inline in an Emacs session with a keystroke sequence that looks like a cat just chased a mouse across the keyboard, and that's before entering the decryption password. To access it, an attacker would first have to learn Emacs. Pretty sure that's a post-quantum level of security.

[dead]

Re: Hackers Got Inside a Flock Camera

#132

Curious how/why all this negative attention is focused directly on the Flock brand (current example notwithstanding)? Seems like if I were a competitor of Flock I'd be pretty happy right now and all this negative press is making them artificially cheap to buyout right now. Motorola/Vigilant, Rekor, Leonardo/ELSAG, and Axon are huge companies making mint off the same thing and no once in 20 years have I seen this leve…

Flock has over 80% of the US market.

You've seen this level of attention on a market leader before: on Microsoft, on Adobe, and others.

Re: Hackers Got Inside a Flock Camera

#133
post #90

Earlier quoted context omitted.

My passwords are in an encrypted block in a text file that can be unencrypted inline in an Emacs session with a keystroke sequence that looks like a cat just chased a mouse across the keyboard, and that's before entering the decryption password. To access it, an attacker would first have to learn Emacs. Pretty sure that's a post-quantum level of security.

Obligatory relevant xkcd: https://xkcd.com/538/

It's a forever-fresh reminder about security versus your own government, but for malicious hackers and bots: the physical trip to visit you costs more than half their infrastructure.

Encryption matters, even if I would divulge everything long before the wrench appeared.

Re: Hackers Got Inside a Flock Camera

#134
post #44

> "We liberated hardware" Ya know, I'm not on Flock's side here.. but be real, this is theft. You should be able to own that if you're going to do something like this.

“I kept trying to explain in between haymakers that we were better than this and on top of that it wasn’t likely to be ruled on favorably as far as the courts.” - Luke O’Neil https://flaminghydra.com/the-end-and-after-2/

Re: Hackers Got Inside a Flock Camera

#136

A friend in China built a Flock overlay network that sends live video and audio from ~100 cameras near me to an AWS server for processing and search.

This is one of the most interesting comments on here. Hints at unauthorized, illegal mass surveillance riding on top of authorized (but also possibly illegal) mass surveillance

[deleted]

Re: Hackers Got Inside a Flock Camera

#137
post #68

Earlier quoted context omitted.

Correct. YC gotta wear their creations with pride.

They won’t have that sort of moment of self reflection until someone does something like use Flock infrastructure to stalk and assassinate the CEO of another YC company and then it will only be brief and fleeting before they double down on supporting this kind of egregious behaviour. Some people are just wired that way.

Let's just use Flock cameras to track all top-level YC people, publish everything we possibly can. Absolutely and utterly eliminate their privacy until they learn to respect ours.

Re: Hackers Got Inside a Flock Camera

#139

Earlier quoted context omitted.

Any breach of security on a system like this is a big flashing red-alert to me. If it could lead an attacker to get ANY of their data... Persons, places, events, etc is pretty damning stuff to be exfiltrated. Stalking/Domestic Violence, blackmail, timed robberies, you name it... That data shouldn't really be in anyone's hands in my opinion, but in anyone's hands (good guys / bad guys) it's pretty powerful.

Apparently police are accessing the network via their personal devices. I highly doubt their security practices online are any better than this. I wouldn't be surprised either to see things that chinese manufacturers do such as intentional back doors. Overall this goes from disappointing to fairly repugnant.

Allegedly you can buy credentials on the darkweb to perform national searches. Might explain why some of the logged reasons for recent searches were “LMAO”

Re: Hackers Got Inside a Flock Camera

#140

Earlier quoted context omitted.

The question is, why should they care at all? Will this hurt their business?

Any breach of security on a system like this is a big flashing red-alert to me. If it could lead an attacker to get ANY of their data... Persons, places, events, etc is pretty damning stuff to be exfiltrated. Stalking/Domestic Violence, blackmail, timed robberies, you name it... That data shouldn't really be in anyone's hands in my opinion, but in anyone's hands (good guys / bad guys) it's pretty powerful.

That's why you or I would care, but that doesn't answer the question of why they would.

Large companies tend to be amoral. Unless it affects them monetarily (possibly indirectly) they're not going to care. Given what they do to make money, I don't see any of these things hurting them.

Post reply on HN