logo

Hackers Compromised 14,500+ Dahua Devices Using Credential Attacks, Auth Bypasses, and P2P

ID: 393ef294-e91e-582e-803e-8eb91f008c0d

STIX ID: report--393ef294-e91e-582e-803e-8eb91f008c0d

Feed Name: The Hacker News

Threat Score
72/100

Date Published: 2026-08-19

Date Updated: 2026-08-20

Author: [email protected] (The Hacker News)

...
...

Hunt.io reconstructed Operation CameraSwarm, a campaign claiming compromise of over 14,530 Dahua cameras between June and July 2026 using credential attacks, two authentication-bypass CVEs (CVE-2021-33044 / CVE-2021-33045), and an Easy4IP P2P relay that can make devices reachable behind NAT; the report details recovered tooling and logs, vendor advisories and mitigations, and recommends firmware updates, disabling P2P where unnecessary, strong credentials, and segmentation.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.