London Daily

Focus on the big picture.
Thursday, Mar 12, 2026

More than 83 million smart devices, including baby monitors, at risk from hackers

More than 83 million smart devices, including baby monitors, at risk from hackers

Hackers could listen to and watch live audio and video feeds from smart cameras and baby monitors, due to a vulnerability being disclosed by Mandiant and the US Cybersecurity and Infrastructure Security Agency.
A critical vulnerability affecting more than 83 million smart devices, including smart cameras and baby monitors, could allow hackers to listen to and watch live audio and video feeds, it has emerged.

The flaw "poses a huge risk" to people's security and privacy said security company Mandiant, which is coordinating its disclosure with the US Cybersecurity and Infrastructure Security Agency (CISA).

While default passwords have prompted UK security services to warn consumers about criminal activity, the flaw discovered by Mandiant also affects devices which do not use default passwords.

According to Mandiant, the problem is in an IoT (Internet of Things) software protocol called Kalay, developed by Taiwanese company ThroughTek, which offers a platform to control smart devices from.

Before the coordinated disclosure was made, ThroughTek warned users to update their software to stop hackers accessing "sensitive information in transmission and on victim devices".

A similar vulnerability was discovered in the Kalay protocol by Nozomi Networks earlier this year, although Mandiant says its discovery is more severe, allowing attackers to remotely control affected devices as well as snoop on them.

Because the Kalay protocol is installed by both original equipment manufacturers (OEMs) and resellers before smart devices reach consumers, Mandiant said it couldn't determine a complete list of products affected.

However, the business - which is part of cyber security company FireEye - noted ThroughTek's website "reports more than 83 million active devices on the Kalay platform at the time of writing".

Back in 2014, the UK's data watchdog warned Britons that private webcam feeds were being streamed on a Russian website, using default logins and passwords to access the devices.

The British government plans to introduce a new law which will force OEMs and resellers of smart devices to meet minimum security requirements in the UK.

The government announced the Product Security and Telecommunications Infrastructure Bill during the Queen's Speech earlier this year, although this is not yet law.

Announcing the law earlier this year, digital infrastructure minister Matt Warman said: "We are changing the law to ensure shoppers know how long products are supported with vital security updates before they buy and are making devices harder to break into by banning easily guessable default passwords.

"The reforms, backed by tech associations around the world, will torpedo the efforts of online criminals and boost our mission to build back safer from the pandemic."

A spokesperson for the UK's National Cyber Security Centre (NCSC) said: "We are aware of this vulnerability and ThroughTek has released an update to fix the issue.

"Simply using the platform does not automatically make you vulnerable to real-world impact, as additional information that is hard to guess is needed to exploit the vulnerability in an individual device successfully.

"To maximise protection, the NCSC recommends individuals keep their software up to date by installing the latest vendor updates as soon as practicable."
Newsletter

Related Articles

0:00
0:00
Close
Release of Mandelson Files Raises Tensions as UK Seeks Stable Relations With Donald Trump
UK Documents Reveal Starmer Was Warned About Mandelson’s Epstein Links Before Ambassador Appointment
Nearly Five Hundred UK Mortgage Deals Withdrawn in Two Days as Market Volatility Forces Lenders to Reprice
Three Cargo Ships Hit Near Iran as Attacks Spread to Strategic Strait of Hormuz
Why British Police Repeatedly Declined to Investigate Jeffrey Epstein’s UK Links
UK Parliament Ends Hereditary Seats in House of Lords, Closing Chapter on Centuries of Aristocratic Lawmaking
EU and UK Urge Israel to Act Against Rising West Bank Settler Violence Amid Regional Tensions
US Senator John Kennedy Says Keir Starmer Should Not Be Trusted for Military Advice Amid Iran War Debate
UK High Court Rejects Attempt to Revive Terrorism Charge Against Kneecap Rapper
Revolut Secures Full UK Banking Licence After Multi-Year Regulatory Wait
Kentucky’s Bench Boost Powers Wildcats Past LSU in SEC Tournament Opener
British Couple Die After Being Pulled From Water at Australian Beach During Family Visit
Global Energy Agency Announces Record Release of 400 Million Barrels to Stabilize Oil Markets Amid Hormuz Disruption
British Airways Suspends UK Repatriation Flights as Middle East Travel Disruption Deepens
US Forces Prepare Ordnance at RAF Fairford as Strategic Bombers Deploy for Middle East Operations
Nigel Farage Faces Criticism After Saying Britain Should Stay Out of Iran War
Landmark UK Trial Begins Over Sony’s PlayStation Store Pricing
UK High Court Rejects Bid to Challenge Britain’s Chagos Islands Agreement With Mauritius
Finnish Duo Triumphs in England’s Annual Wife-Carrying Race, Winning a Barrel of Ale
How U.S. and UK National Security Strategies Are Reshaping the Global Business Landscape
Green Party Gains Momentum as Labour Shifts Toward the Political Centre
Royal Navy Destroyer HMS Dragon Sets Sail for Eastern Mediterranean as Regional Tensions Rise
UK Homebuilder Persimmon Warns Iran Conflict Could Dent Property Buyer Confidence
Roman Abramovich Signals Legal Fight if UK Seeks to Seize Chelsea Sale Funds
UK Ready to Back Emergency Oil Reserve Release as Middle East Conflict Pushes Prices Higher
Study of 40,000 Articles Sparks Debate Over Alleged Anti-Muslim Bias in UK Media
US and UK Army Chiefs Strengthen Cooperation on the Future of Armored Warfare
Britain’s Search for the Next ARM Intensifies as Startups and Investors Target the Semiconductor Frontier
Three US Strategic Bombers Arrive at RAF Fairford as Iran Conflict Intensifies
Cancer Death Rates in the UK Fall to the Lowest Level on Record
UK Government Bond Yields Retreat Slightly After Sharp Spike Triggered by Middle East Conflict
UK Chancellor Warns Middle East War Could Push Inflation Higher
UK Prime Minister Warns Iran Conflict Could Drive Up Prices and Threaten Economic Stability
Trump Declines UK Offer to Deploy Aircraft Carriers to Middle East Amid Iran Conflict
Prince Harry and Meghan Markle to Return to Australia After Seven Years for Philanthropic and Business Engagements
UK Government Signals Independence From Washington as Cooper Says Britain Does Not Agree With Trump on Every Issue
UK Experts Warn AI Chatbots Are Fueling Surge in Claims of Organised ‘Satanic’ Ritual Abuse
UK Political Parties Divided Over Strategy as Iran Conflict Reshapes Foreign Policy Debate
Britain Discloses Secret Military Repair Hubs Operating Inside Ukraine
Trump Says US No Longer Needs UK Carrier Support After Delayed Offer Amid Iran Conflict
Why Britain Has Become Involved in the US-Israel Military Campaign Against Iran
UK Gas Storage Falls to Under Two Days as Iran Conflict Jolts Global Energy Markets
UK Warned to Brace for Economic Shock as Iran War Drives Global Energy Price Surge
Starmer and Trump Hold First Call After Public Dispute Over Iran Conflict
UK Dentists Returned £1.3 Billion to Government as Shift Toward Private Care Accelerates
Expert Warns UK Must Build Emergency Food Stockpiles to Prepare for Climate Shocks or War
UK Plans Charter Flight to Evacuate British Nationals from Gulf as Regional Conflict Disrupts Air Travel
Families of Zimbabwe’s Liberation Fighters Call on Britain to Help Locate Skulls Taken During Colonial War
Iran’s Ambassador Warns Britain to ‘Be Very Careful’ Over Deeper Role in Expanding Middle East War
UK Military Leadership Defends Britain’s Defensive Role in Expanding Middle East Conflict
×