• Welcome to RCTalk! 🚀

    Join the #1 RC community where hobbyists connect, share, and get expert advice on RC cars, trucks, boats, drones, and more!

    • Friendly & passionate RC enthusiasts
    • RC tips & troubleshooting
    • Buy, sell & trade RC gear
    • Share builds & upgrades

Drone maker DJI left its private SSL, firmware keys open to world+dog on GitHub FOR YEARS

This site may earn a commission from merchant affiliate
links, including eBay, Amazon, and others.

WoodiE

Kind of good admin
Administrator
Messages
16,977
Reaction score
6,284
Points
1,830
Location
Lexington, KY
RC Driving Style
  1. Bashing
Well this is embarrassing...

DJI left it's AWS credentials, private SSL, firmware keys and more publicly accessible for years! Looks like plenty of personal information was passed through the system. No idea if any attackers have taken advantage of this info, but it seems even the US government knew DJI wasn't very secure as the US Army had banned their use earlier this year.

Read more here.
 
Back
Top