Hi everyone,
I was just looking up some information on texecom, when I came up with this website:-
http://www.theregister.co.uk/2015/12/31/iot_alarm_crypto/
It states the a security expert believes the alarm is open to hack attacks when you leave the port open for your router. But this is what texecom advise the owner to do:-
"To be able to remote control the alarm system remotely, you open a firewall port in the router and do a port forwarding to the internet. But this allows the mobile app to directly connect to the ComIP module over an unencrypted connection, Lo Castro discovered.
Using WireShark, he said he had discovered that data traffic between the mobile app and the control panel is done in clear text or encoded to BASE64. That means potentially confidential information like the alarm control panel (UDL) password, device name and location are exposed"
What can you guys advise?
Thanks