logo

Video from The Security of Things Forum: Hacking the Belkin WEMO with Invincea

ID: 94e41d11-14b1-5861-9b12-7f9b7979311e

STIX ID: report--94e41d11-14b1-5861-9b12-7f9b7979311e

Feed Name: Security Ledger

Threat Score
60/100

Date Published: 2017-01-23

Date Updated: 2026-04-26

Author: Paul Roberts

...
...

In a 2016 Security of Things Forum presentation, Scott Tenaglia of Invincea demonstrated multiple security flaws in Belkin WeMo smart home products—building on earlier research that exposed insecurely stored encryption keys and weak SSL validation. Tenaglia showed that malformed updates and SQL injection flaws could be used to create and execute malicious binaries on devices, enabling remote takeover of affected WeMo units.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.