UPDATED 23:28 EST / APRIL 03 2017

INFRA

Connected vibrator with camera can expose intimate moments to hackers

In the age that has brought us the term the “Internet of Things,” just about anything and everything can be connected to the Internet, from light bulbs and thermostats to washing machines and fridges — and more. The We-Vibe, a vibrator that allows a partner to control the device over an Internet connection, made headlines in March after the company behind the device agreed to pay its customers up to $10,000 each in compensation after it was revealed that its vibrators were collecting highly sensitive information without consent.

If a vibrator that shares data could be considered a privacy risk, imagine a vibrator that doubles as a webcam that allows users to record their “love through pictures and videos.” Such a product does exist in the form of Svakom’s Siime Eye (not safe for work), an Internet-connected vibrator that features a small camera at the tip to allow users to share their pleasure online. That may sound either rather tame or risque depending on your own views of sex toys, but what isn’t acceptable about the device is its lack of built-in security.

Researchers from Pen Test Partners studied the vibrator and found that the device has its own built-in Wi-Fi server for easy access, but that server is not only easy to use but easy to hack, with a default password of “88888888,” meaning that anyone in range of the vibrator can not only connect to the device but hijack the video from it as well. If that’s not bad enough, with this access a hacker could potentially seize control of the vibrator’s operation as well.

Logically the answer to this security issue would be to set a new password for the vibrator, but that’s not possible. “The credentials are hard-coded in the official app, so any user wanting to use the Siime Eye the official way will never change these credentials,” Pen Test Partners noted. As if all that weren’t enough, researchers found that the IP address for the vibrator is static, or fixed, potentially allowing anyone online to trace where the vibrator is physically located.

It probably goes without saying at this point, but if you use an Internet-connected sex toy of any type, the risk is high that you may expose yourself in more ways than one.

Photo: Svakom

A message from John Furrier, co-founder of SiliconANGLE:

Support our mission to keep content open and free by engaging with theCUBE community. Join theCUBE’s Alumni Trust Network, where technology leaders connect, share intelligence and create opportunities.

  • 15M+ viewers of theCUBE videos, powering conversations across AI, cloud, cybersecurity and more
  • 11.4k+ theCUBE alumni — Connect with more than 11,400 tech and business leaders shaping the future through a unique trusted-based network.
About SiliconANGLE Media
SiliconANGLE Media is a recognized leader in digital media innovation, uniting breakthrough technology, strategic insights and real-time audience engagement. As the parent company of SiliconANGLE, theCUBE Network, theCUBE Research, CUBE365, theCUBE AI and theCUBE SuperStudios — with flagship locations in Silicon Valley and the New York Stock Exchange — SiliconANGLE Media operates at the intersection of media, technology and AI.

Founded by tech visionaries John Furrier and Dave Vellante, SiliconANGLE Media has built a dynamic ecosystem of industry-leading digital media brands that reach 15+ million elite tech professionals. Our new proprietary theCUBE AI Video Cloud is breaking ground in audience interaction, leveraging theCUBEai.com neural network to help technology companies make data-driven decisions and stay at the forefront of industry conversations.