Hackers Compromised 14,500+ Dahua Devices Using Credential Attacks, Auth Bypasses, and P2P
ID: 393ef294-e91e-582e-803e-8eb91f008c0d
STIX ID: report--393ef294-e91e-582e-803e-8eb91f008c0d
Feed Name: The Hacker News
Threat Score
Hunt.io reconstructed Operation CameraSwarm, a campaign claiming compromise of over 14,530 Dahua cameras between June and July 2026 using credential attacks, two authentication-bypass CVEs (CVE-2021-33044 / CVE-2021-33045), and an Easy4IP P2P relay that can make devices reachable behind NAT; the report details recovered tooling and logs, vendor advisories and mitigations, and recommends firmware updates, disabling P2P where unnecessary, strong credentials, and segmentation.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
