Y
Hacker News
new
|
ask
|
show
|
jobs
by
voidUpdate
36 days ago
Can you actually access any of the doorbells on the internet with this? It reads to me like you need physical access to extract the signing keys etc over the debug port before you can actually impersonate the device
2 comments
interludead
36 days ago
I think the distinction is: physical access helps bootstrap the research, but the resulting key/signing logic is not device-specific
link
porshia
36 days ago
You can enumerate them against the API.
link