logo

We Be Jammin’ – Bypassing Chamberlain myQ Garage Doors

ID: 22cf1c16-8558-5436-968b-15347b5638c1

STIX ID: report--22cf1c16-8558-5436-968b-15347b5638c1

Feed Name: McAfee Labs Blog

Threat Score
35/100

Date Published: 2020-01-07

Date Updated: 2026-04-28

Author: Sam Quinn

...
...

McAfee Advanced Threat Research analyzed the Chamberlain MyQ Hub and discovered an RF protocol weakness in the remote door sensor to hub communications: an FHSS OOK-based rolling-code implementation that can be subverted using a Frequency-Hopping Spread Spectrum roll-jam (JIT jamming) technique. Researchers extracted firmware via JTAG, examined local APIs, captured and analyzed the multi-frequency OOK waveform, and demonstrated how selective jamming or automated capture of state transmissions can cause the mobile app to misreport garage state, enabling attackers to open a garage without obvious detection. The report includes attack reproduction details, automation via GNU Radio for a stealthy device, discussion of practical limitations (range, need for proximity, complexity), and notes that Chamberlain was notified and released an app update adding a warning about unreliable door state.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.