2 ms·
My biggest source of paranoia is my open home assistant port, while it requires a strong password and is TLS-encrypted, I'm sure that one day someone will find
by byb 9mo ago
My biggest source of paranoia is my open home assistant port, while it requires a strong password and is TLS-encrypted, I'm sure that one day someone will find an exploit letting them in, and then the attacker will rapidly turn my smart home devices on and off until they break/overheat the power components until they start a fire and burn down my house.
- seszett 9mo agoThat seems like a very irrational fear. Attackers don't go around trying to break into Home Assistant to turn the lights on at some stranger's house. There's also no particular reason to think Home Assistant's authentication has to have a weakness point. And your devices are also unlikely to start a fire just by being turned on and off, if that's your fear you should replace them at once because if they catch fire it doesn't matter if it's an attacker or yourself turning them on and off.
- deleted 9mo ago[deleted]
- timc3 9mo agoPeople are putting their whole infrastructure onto HA - cars, Apple/Google/other accounts, integrations to grid companies, managing ESP software etc.. I think that has more potential for problems than turning lights on and off and warrants strong security.
- wao0uuno 9mo agoWhy expose HA to the internet? I’m genuinely curious.