Live data from Hacker News

Remote Code Execution to Persistent Backdoor in TP-Link Surveillance Camera

medium.com

1–4 of 4 posts

Re: Remote Code Execution to Persistent Backdoor in TP-Link Surveillance Camera

#3
Kudos to the author, nice work. It's sad that so many things are still so vulnerable. TP-Link gear is garbage; I think most people knew that already. Honestly, so is most consumer IoT/embedded gear . I did some analysis a while back and found garbage like open telnet ports, old software, and worst of all, cryptographic flaws like constant nonces and IVs. Not to mention the age-old flaw of no TLS on the management interface.