The news this week that NurseryCam CCTV devices can be very easily accessed by anyone again highlights the security weaknesses of smart devices. In this case, the default administrator password was accessible to anyone looking at the source code of the web page used to login to the camera.
This would allow anyone with the correct IP address of a NurseryCam camera to use this password to access both the camera’s live stream and 18 months of recording history stored on the device. Default passwords – that is, passwords set by the manufacturer and not changed – are an inherent problem in many smart devices.
In fact, I highlighted this as a problem 4 years ago on ITV’s “Good Morning Britain” by hacking presenter Charlotte Hawkins’s nursery camera (with her permission) in an almost identical way to this latest case.
Falanx Group Ltd (LON:FLX), through its subsidiaries, provides cyber defence and intelligence services to blue chip and government clients worldwide. It operates through Falanx Cyber Defence and Falanx Intelligence divisions.