Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
TRENDING TODAY
Home > News > Security > Security Fixes and Improvements

January 29th, 2013, 09:58 GMT · By

Flaws in DVRs Allow Hackers to Turn Off Security Cameras

SHARE:

Adjust text size:

Security experts find vulnerabilities in Ray Sharp DVRs
Enlarge picture
A security researcher called “someLuser” has identified a number of vulnerabilities in security camera digital video recorders (DVRs), which could be leveraged by cybercriminals to gain root access to the devices.

someLuser has found that an attacker could leverage the security holes to gain access to the DVR’s configuration, including user credentials in clear text. With this information in hand, a hacker can execute arbitrary system commands via another vulnerability in the web interface.

Rapid 7’s HD Moore has also examined the Ray Sharp DVR platform and someLuser’s findings. He has discovered that the devices of at least 17 other companies are also affected.

“The Ray Sharp DVR platform supports the Universal Plug and Play (UPnP) protocol and automatically exposes the device to the internet if a UPnP-compatible router is responsible for network address translation (NAT) on the network,” Moore explained.

“Many home and small office routers enable UPnP by default. This has the effect of exposing tens of thousands of vulnerable DVRs to the internet. For reference, the Ray Sharp firmware uses the ‘minupnp’ open source implementation to perform this port mapping.”

The expert told Forbes that criminals could access all the recorded videos, and even turn off the security cameras if they planned on robbing the store.

The affected products are from Swann, Lorex, URMET, KGuard, Defender, DEAPA/DSP Cop, SVAT, BCS, Bolide, EyeForce, Atlantis, Protectron, Greatek, Soyo, Hi-View, Cosmos, and J2000. Initially, Zmodo was also on the list, but the company’s representatives told Forbes that they were using their own, more secure firmware.

In the meantime, while these vulnerabilities are addressed (if they’re ever addressed) Rapid 7 has developed a Metasploit module which allows users to scan for vulnerable devices.


1,573 hits
Link to this article · Print article · Send to friend

MUST-READ RELATED ARTICLES:


McAfee: 631 Botnet Command and Control Servers Currently Active in the US

Finland Publishes Its Cyber Security Strategy

New DDOS Tools: Server-Based Botnets and Encrypted Layer Attacks

Solutionary Q4 2012 Report: 70% of Exploit Kits Originated in Russia

Security Experts Warn About Fake “Temple Run 2” for Android

READER COMMENTS:



No user comments yet.
Be the first to express your opinion!
Copyright © 2001-2013 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM