3 ms·
> Has anyone done a security review of the device and the associated app? Partially, yes, here's our DEF CON 24 presentation about it: "Breaking the Internet o
by follower 10y ago
> Has anyone done a security review of the device and the associated app?
Partially, yes, here's our DEF CON 24 presentation about it: "Breaking the Internet of Vibrating Things": https://www.youtube.com/watch?v=v1d0Xa2njVg https://www.youtube.com/watch?v=v1d0Xa2njVg
We started out wanting to learn how the device worked, wondering how secure it was and then discovered that what the manufacturer was doing was of more immediate concern. (FWIW the original suit was filed about a month after our DEF CON talk.)
> I'm wondering if the lack of hacks came from actual good engineering on the company's part
As you'll see in the talk, they appeared to have done some things right (e.g. secure network connections) but there are a lot of moving parts (device hardware, firmware, app, backend servers, chat, audio, video, control) and we barely scratched the surface.
> if the device was just too niche to catch the interest of the black hats?
It caught our attention but our hats were black with sparkly skulls on them. :)