< BACK TO NEWS
negativeSYS.SOURCE: The Hacker News2026-08-19T17:04:28+05:30

Security Breach Exposes Over 14,500 Dahua Devices via Credential Attacks and P2P Exploits

Cybersecurity researchers uncovered a campaign compromising over 14,500 Dahua devices through credential attacks, authentication bypasses (CVE-2021-33044 and CVE-2021-33045), and P2P relay techniques. The breach highlights critical vulnerabilities in IoT devices, urging users to update firmware and disable unnecessary P2P features.

Cybersecurity researchers at Hunt.io have disclosed details of a campaign that they say compromised more than 14,530 Dahua devices between June 17 and July 22, 2026, using credential attacks, two authentication-bypass flaws, and a peer-to-peer (P2P) relay technique.

The activity, codenamed Operation CameraSwarm, was reconstructed from a 407 MB exposed working directory containing 2,616 files

Read original article

*** END OF TRANSMISSION ***