Cameras were designed to be connected to a specific server in China: South Korean military removes Chinese-made cameras at bases over security risks (www.rappler.com)
from 0x815@feddit.org to technology@beehaw.org on 13 Sep 2024 12:50
https://feddit.org/post/2813353

South Korea’s military recently removed about 1,300 Chinese-made surveillance cameras installed at bases, concerned about potential security risks, Yonhap news agency reported on Friday, September 13, citing an unnamed military official.

The cameras were designed to be connected to a specific server in China, but no actual data was leaked, Yonhap said.

They had been supplied by a South Korean company, with their Chinese origin determined during equipment inspections earlier this year, the report cited the official as saying.

The cameras were not used for guard operations such as along the heavily fortified Demilitarized Zone between the two Koreas, but for monitoring training groups and perimeter fences at bases, the report said.

South Korea’s defense ministry said on Friday it is in the process of collecting the foreign-made cameras and replacing them with others. The ministry declined to confirm where the cameras were made.

Last year, Australia’s foreign minister said its defense and foreign ministries were removing surveillance cameras made by Chinese-run firms from their facilities after reports that the technology posed a security risk.

#technology

threaded - newest

Moonrise2473@feddit.it on 13 Sep 2024 13:01 next collapse

No matter on which country the iot device it’s made, giving internet access to them in military bases is madness. IOT must be on a separate VLAN without any internet access. No exceptions, they’re usually running buggy firmware based on ancient Linux versions and no updates are ever released or installed. They’re exploitable time bombs

drwho@beehaw.org on 13 Sep 2024 16:07 collapse

So much for going on a Shodan safari in South Korea.

drwho@beehaw.org on 13 Sep 2024 16:07 next collapse

News flash: IoT doesn’t always mean “backend is on AWS.”

Sheesh.

BCsven@lemmy.ca on 13 Sep 2024 17:21 collapse

Im surprise they installed them in the first place. First thing I did when somebody gave me TPlink Kasa smart plugs and switches was run the github code to swap the remote server lookup to 127.0.0.1

LlilL@lemm.ee on 13 Sep 2024 18:25 collapse

I’m curious, what git project would that be?

BCsven@lemmy.ca on 13 Sep 2024 18:32 collapse

github.com/jkbenaim/hs100 also works on some models not listed