Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | [ISN] Google exposes web surveillance cams |
|---|---|
| Date: | Tue, 11 Jan 2005 00:45:01 -0600 (CST) |
http://www.theregister.co.uk/2005/01/08/web_surveillance_cams_open_to_all/ By Kevin Poulsen, SecurityFocus 8th January 2005 Blogs and message forums buzzed this week with the discovery that a pair of simple Google searches permits access to well over 1,000 unprotected surveillance cameras around the world - apparently without their owners' knowledge. Searching on certain strings within a URL sniffs out networked cameras that have Web interfaces permitting their owners to view them remotely, and even direct the cameras' motorized pan-and-tilt mechanisms from the comfort of their own desktop. Video surfers are using this knowledge to peek in on office and restaurant interiors, a Japanese barnyard, women doing laundry, the interior of an Internet collocation facility, and a cage full of rodents, among other things, in locales scattered around the world. News of the panoptical search queries apparently began on a community web forum, then spread to the widely-read BoingBoing weblog Wednesday and Thursday. In the past, geeks wanting to peek in on surveillance cams have driven around with receivers and special antenna rigs to pick up signals from wireless cameras. One of the Google search strings circulating summons a list of nearly 1,000 installed network cameras made by Swedish-based Axis Communications, the other turns up about 500 cameras sold by Panasonic. Neither company could be reached after hours Friday. According to their websites, both companies offer the ability to password-protect the Web interfaces to their cameras, and Axis has a feature that blocks access to webcams from all but approved Internet IP addresses. t's not apparent whether the security features are enabled by default. A FAQ on Panasonic's website includes a warning that their network cameras may not be right for "sensitive applications," and sports a broad disclaimer: "No specific claims are made pertaining to specific levels of security the camera offers." _________________________________________ Open Source Vulnerability Database (OSVDB) Everything is Vulnerable - http://www.osvdb.org/
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | [ISN] DallasCon 2005 Professional Information Security Conference, InfoSec News |
|---|---|
| Next by Date: | Re: [ISN] From Russia with malice (Two messages), InfoSec News |
| Previous by Thread: | [ISN] DallasCon 2005 Professional Information Security Conference, InfoSec News |
| Next by Thread: | Re: [ISN] From Russia with malice (Two messages), InfoSec News |
| Indexes: | [Date] [Thread] [Top] [All Lists] |