I have noticed in the past several weeks random scans specifically for Roku streaming devices (and likely other types) captured by my honeypot. If they can be compromised, what can be gain? Settings like stored payment information, personal information (email/password), subscription, App selected, etc. Like any other devices, it is important to keep the OS and Apps up-to-date. Traffic Activity 20220421-180039: 192.168.25.9:81-159.65.4.198:56874 data 20220421-180046: 192.168.25.9:8088-159.65.4.198:52264 data Indicators 159.65.4.198 Get Requests It is a good idea to regularly review the information stored in setting and make sure the Roku device is up-to-date. [1] https://www.shodan.io/search?query=Server%3A+Roku+ ----------- |
Guy 522 Posts ISC Handler Apr 23rd 2022 |
Reply Subscribe |
Apr 23rd 2022 4 weeks ago |
Don't they auto update? Also, this is yet another reason to properly segment your network. Why would a Roku be accessible from the internet?
|
Anonymous |
Reply Quote |
Apr 24th 2022 4 weeks ago |
Sign Up for Free or Log In to start participating in the conversation!