Someone got access to my camera. Where did I left open door in my system?

Hi guys. Not really sure if the issue is in Home Assistant, but most likely it is connected to duckdns and open ports. Ok, here is what happened:

Снимок экрана 2020-04-02 в 18.33.38

Someone (who obviously does not like russian president) managed to change “name” of my camera. Camera is hi watch 214. It has web interface and it is connected to ezviz app. Encryption of the image is turned on.

I have Home Assistant and Nextcloud server at home. For Home Assistant I use duckdns addon with let’s encrypt and with 8123 port forwarded. For Nextcloud I have wireguard VPN with forwarded 51820 port to 51820. Seems like that’s it. Will appreciate any help here.

Stay safe everyone.

This is only your camera. I don’t think anyone got into your VPN.

You should update your camera firmware if you haven’t.

1 Like

Yeah, what he said, but …

But moving your ports to 443 and using two factor authentication would generally help too.

As for limiting the culprit down to people who dislike Putin that’s a bit like saying everyone who dislikes Trump (except it seems from Trump himself, who got a lot of assistance in the last election) so your list of suspects is about 90% of the planet, mainly because the other 10% don’t know who he is.

:rofl:

3 Likes

Also delete this app connection and only connect locally for configuration.

You can still view it from anywhere via home assistant.

1 Like

It’s a shame to have weak app. That is sad. Likely we have Home Assistant.

And thank you all for advices, checked firmware (it was fresh) and deleted camera from ezviz app.

Will see how it goes.

Most camera, vendor camera app, vendor camera software for PC and all related from vendor has network security problem and built in back door.
not just the vendor but most IP camera vendor.

DO NOT allow the camera access to internet.
DO NOT install the camera app on phone.
DO NOT run the software on PC with access to internet.
Allow these item access to local network only and limit that as much as possible.

For web access HA can be used as fronted for live view or may use for frontend to camera software.
This person did that as warning to you.
Also be aware that at this point they likely access your network so you cannot trust it or anything that has connected to it . Good Luck!!!

1 Like

Could you suggest how can I disallow the camera access to internet?
Other points are checked

this require vlan. not possible on most consumer router unless using dd-wrt.
maybe something possible with making firewall with raspberry pi but ive seen it performed