Dahua IP Cameras: Vulnerable to Authentication Bypass and P2P Relay
Dahua IP cameras are network surveillance devices that were targeted in Operation CameraSwarm. They are affected by CVE-2021-33044 and CVE-2021-33045, which allow…
Dahua IP cameras are network surveillance devices that were targeted in Operation CameraSwarm. They are affected by CVE-2021-33044 and CVE-2021-33045, which allow…
Easy4IP is a peer-to-peer relay service used by Dahua devices. The P2P path can be exploited using a valid serial number to…
p2pwn is a public proof-of-concept tool that accepts Dahua serial numbers as input and checks for CVE-2021-33044 and CVE-2021-33045. It contains a…
CVE-2021-33044 is an authentication-bypass vulnerability in Dahua IP cameras and related products. Attackers can bypass device identity authentication by constructing malicious data…
CVE-2021-33045 is an authentication-bypass vulnerability in Dahua IP cameras. It involves a loopback login request using the 127.0.0.1 address. The flaw allows…
CVE-2025-31702 is a privilege-escalation flaw in Dahua products that requires previously obtained normal-user credentials. It was associated with the recovered tooling in…
ITRES Labs is a cybersecurity research firm that identified the P2P relay vulnerability in Dahua devices. They recommend disabling P2P where not…
Dahua Technology is a leading provider of video surveillance products and services. The company was the target of Operation CameraSwarm, which exploited…
Cybersecurity researchers at Hunt.io have disclosed a campaign, dubbed Operation CameraSwarm, that compromised more than 14,530 Dahua devices between June 17 and…