Free Republic
Browse · Search
News/Activism
Topics · Post Article

Skip to comments.

Houston-area family says their Wi-Fi baby monitor was hacked
cbsaustin ^ | Dec. 18, 2018 | CBSAustin

Posted on 12/20/2018 8:24:25 AM PST by bgill

A terrifying moment for a Houston-area family. The parents of a four-month old boy say a man hacked into their Nest Wi-Fi camera and threatened to kidnap their baby. "We heard sexual expletives being said in his room. So we throw on the light in our room. He turned that camera on and told us, said 'turn off the light' and then said, 'I'm going to kidnap your baby, I'm in your baby's room,'" said Ellen Rigney, the baby's mother. The parents raced up the stairs and found their son safe and sound.

(Excerpt) Read more at cbsaustin.com ...


TOPICS: Crime/Corruption; Culture/Society; US: Texas
KEYWORDS: babymonitor; surveillance; tech; wifi
That creep did the family a favor. The next creep would kidnap the kid and kill the parents without giving any warning.
1 posted on 12/20/2018 8:24:25 AM PST by bgill
[ Post Reply | Private Reply | View Replies]

To: bgill
Unsecured IP Camera List

I'll go out on a limb here: UserName = "Admin"; Password = "Password"

"Hacked" -- SNORT!

2 posted on 12/20/2018 8:32:30 AM PST by ProtectOurFreedom
[ Post Reply | Private Reply | To 1 | View Replies]

To: ProtectOurFreedom
People leave their SSID (wifi network name) at the factory default and then set some stupid password like "guest" or "network". Hackers have "rainbow tables" that allow them to rapidly try all possibilities with common SSIDs and common passwords.

*Change your SSID to something unique. (No, "FBI Surveillance Van," while cute, is hardly unique.) Then make your network password something hard to guess. It's not rocket science.*

3 posted on 12/20/2018 8:42:44 AM PST by Campion ((marine dad))
[ Post Reply | Private Reply | To 2 | View Replies]

To: bgill
I received the following email this morning. Do you think I should fill out the form with all my bank information and send it to them?

BANK TRANSFER COPY /ECH

I will need the ACH form filled out and returned for wire payments.

Respectfully

---

SportOptics.com
Office 781-124-8372
Fax 781-124-8053
EMail:service@sportoptics.com
--
This message has been scanned for viruses and dangerous content by MailScanner, and is believed to be clean.

--
This message has been scanned for viruses and dangerous content by MailScanner, and is believed to be clean.


4 posted on 12/20/2018 8:52:56 AM PST by ProtectOurFreedom
[ Post Reply | Private Reply | To 1 | View Replies]

To: Campion

"OK got it...it's not rocket science.."

5 posted on 12/20/2018 8:55:38 AM PST by Doogle (( USAF.68-73....8th TFW Ubon Thailand....never store a threat you should have eliminated)))
[ Post Reply | Private Reply | To 3 | View Replies]

To: Campion

I seriously doubt this guy was within WiFi range and needed the SSIS. There is zero point making your SSID invisible or complex when there are tools like inSSIDer, NetStumbler, or Kismet that can scan the network for a short while to show all of the current networks out there. A hidden or complex SSIS does nothing to enhance your security. The biggest problem by far is not changing the default username or password on the camera.


6 posted on 12/20/2018 9:12:49 AM PST by ProtectOurFreedom
[ Post Reply | Private Reply | To 3 | View Replies]

To: ProtectOurFreedom

Why on earth do people have baby monitors anyway?

.


7 posted on 12/20/2018 9:16:25 AM PST by Mears
[ Post Reply | Private Reply | To 6 | View Replies]

To: bgill
Okay, so I'm completely clueless in this world of internet of things.

I recently bought a wi-fi printer, and it appears to have set up its own wi-fi network (I can see it as an optional network in my area).

It is connected to my home wi-fi, but I'm not certain the printer is secure itself.

My home wi-fi is as secure as I can make it, along with my router username/password, but I don't know a darn thing about the printer.

I can't seem to find anything on it in the manual. I do know that it requires a PIN that prints from the computer physically when I first print from a device, but after that, I'm not sure, as I've not used it much.

8 posted on 12/20/2018 9:22:23 AM PST by IYAS9YAS (There are two kinds of people: Those who can extrapolate from incomplete data.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Mears

To monitor the baby?


9 posted on 12/20/2018 9:24:20 AM PST by ProtectOurFreedom
[ Post Reply | Private Reply | To 7 | View Replies]

To: bgill

SECURE your WIFI. It is simple.


10 posted on 12/20/2018 9:31:45 AM PST by shanover (...To disarm the people is the best and most effectual way to enslave them.-S.Adams)
[ Post Reply | Private Reply | To 1 | View Replies]

To: bgill

We are the ‘baby’ monitors, not a camera...


11 posted on 12/20/2018 9:41:29 AM PST by Deplorable American1776 (Proud to be a DeplorableAmerican with a Deplorable Family...even the dog is, too. :-))
[ Post Reply | Private Reply | To 1 | View Replies]

To: ProtectOurFreedom

Parents have been monitoring babies for eons-—this is just another unneeded “gadget” for the home.

.


12 posted on 12/20/2018 10:00:08 AM PST by Mears
[ Post Reply | Private Reply | To 9 | View Replies]

To: ProtectOurFreedom
A hidden or complex SSIS does nothing to enhance your security.

No, actually it does. The authentication token that the secure wifi protocol uses depends on both the SSID and password. Hackers have precomputed tables with tokens for common SSID/password combinations. If you have an obscure SSID, sure, they can see it, but it's not on their precomuputed table and they would have to (possibly write code) to try it against (a big number) of possible passwords.

Google "wifi rainbow table" for more info.

13 posted on 12/20/2018 10:24:16 AM PST by Campion ((marine dad))
[ Post Reply | Private Reply | To 6 | View Replies]

To: ProtectOurFreedom

If the camera is open to the Internet, then it definitely needs its login credentials changed from the default — you are right. Not sure why you would export a baby monitor to the Internet, though.


14 posted on 12/20/2018 10:26:19 AM PST by Campion ((marine dad))
[ Post Reply | Private Reply | To 6 | View Replies]

To: Campion
WiFi Connected Baby Monitor

So you can check in on baby from the bar! Duh!

15 posted on 12/20/2018 10:43:21 AM PST by ProtectOurFreedom
[ Post Reply | Private Reply | To 14 | View Replies]

To: Campion
Thanks. What prevents somebody from testing millions of passwords against a known SSID? Rainbow Tables seems to attack common SSIDs with common passwords. WPA/WPA2 seem most vulnerable.

Think your SSID can't be discovered? Check out what your phone is broadcasting about you (published three months ago)...

What Your RF Signature Says About You

16 posted on 12/20/2018 10:49:50 AM PST by ProtectOurFreedom
[ Post Reply | Private Reply | To 13 | View Replies]

To: Campion
506 million WiFi networks mapped on Wigle.net with 7.2 billion observations. I didn't find mine, but I found lots of neighbors.
17 posted on 12/20/2018 11:00:22 AM PST by ProtectOurFreedom
[ Post Reply | Private Reply | To 13 | View Replies]

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
News/Activism
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson