PSA: time to recycle your outdated Wemo sensible plugs


Whereas this wasn’t within the scope of our analysis, from what we have now gathered, it seems that this vulnerability might be triggered through the Cloud interface (which means, and not using a direct connection to the system).

This additional highlights the necessity for the abovementioned steps, because the Wemo Cloud infrastructure might be used as a possible assault vector.



Source link