IP Camera Cybersecurity Rankings - Avigilon, Axis, Bosch, Dahua, Hanwha, Hikvision, i-PRO, Uniview, Vivotek

bm
bashis mcw
Published Aug 09, 2023 14:08 PM

IPVM has released brand new rankings of 9 manufacturers' camera cybersecurity across 9 categories and 50 criteria, watch the video below for an overview.

IPVM tested 9 manufacturers for this ranking, evaluating Avigilon, Axis, Bosch, Dahua, Hanwha, Hikvision, i-PRO, Uniview, and Vivotek based on the criteria explained in the IP Camera Cybersecurity Comparison Criteria.

In this report, we detail the best and worst across 9 main categories, which include 50 total criteria.

  • Fundamental Built-In Security Features
  • Advanced Built-In Security Features
  • Attack Surface - WebUI
  • Attack Surface - HTTPS / TLS / SSL
  • Attack Surface - Disabled Services
  • IP Camera Digital Fingerprinting
  • Cloud / P2P IP Camera Connection
  • Firmware Updates
  • Manufacturer Cybersecurity Support

Also, see our other related reports:

*** ********* ************* *** ******** ******** were ******.

  • ********: *.**.*.**
  • ****: **.*.**
  • *****: *.**.**** (********)
  • *****: **.***.*******.**.*, ***** ****: ****-**-**
  • ****** *-******: *.**.**
  • ****** ******* *: *.**.**
  • *********: **.*.** ***** ******
  • *-***: *.**
  • *******: ****-*****.**.**.******
  • *******: ****-*****.**.*.****** (**** *********)
  • *******: *.****.**.***

*** ******** *** ********* ** * groups: **** *******, ******* *********** (* manufacturers), *** ***** (* *************).

****: **** ***** ** ****** *** and *** **** ************* ** ****.

Executive *******

**** ***** *********** *********** ******* ********* manufacturers' ** *******. ***** ** *** ranking ** *** ****** *******.

IPVM Image

*** ***** ****** ************* ********** ************** *** ********** ** **** ******** and ********.

Best *******

**** ******* ******* *** **** ************* focus, **** ****** ******* ** * out ** * **********. **** *** the **** ************ **** **** ******* in *** * ************ ************* ******* criteria. **** *** **** ** ** Camera ******* **************, **** * *** of *, *** ** ******* **** network ********* ******** ********* **** ****** to ****** ***********.

IPVM Image

Average **********

****** ******** *** ****** ******* ** HTTPS/TLS ******** *** *****-******* ******* ** Fundamental *****-** ******** ********. ****** ******** offers *** ******** *** ****** ***** information-gathering **********, *** ****** ***** ****** be ********.

IPVM Image

********* *** ****** ******* ** *****/*** IP ****** **********, ****** ** **** found ******* ************* ****** ** *** Hikvision ******* *** ************* **** *** Cloud. ********* **** *** ***** *** chip ********, ****** ** *** ***** force ***** ******* *** ***** ******* by *******.

IPVM Image

****, ***:

****** *-****** *** ****** ******* ** Attack ******* - *****/***/***, ******* ******* in * *** ** * **********, with *********** ******* **********. ******-**** *-****** (**** ******)**** ********* ***, *** ***** * TPM ****, ****** ****, *** ****** firmware.

** ******* ** *** ****** ******** version ********* *** ***** **** *** previously ***** *****, ***, *** **** issues **** **** ********.

IPVM Image

***** *** ****** ******* ** *****/*** IP ****** ********** *** *****-******* ******* in ****** ******* - *****/***/***. ***** offers *** **** ********, ****** ** missing ***** ***** ***** *******, *** default ******* **** ******* *****, *** camera ***** ****** ** ********.

** ******* ** *** ****** ******** version ********* *** ***** ** ******* to *** ******** *******.

IPVM Image

******** *** *****-******* ******* ** **** Attack ******* ********** *** *********** *****-** Security ********. ******** ****** *** ********, though ** ** ******* ******* *******, but *** ***** ******* ** *******, supports *** **.*, *** *********** ****** access ** ********* ** *** *** server ******* **************.

IPVM Image

*-*** *** *****-******* ******* ** ****** Surface - *****/***/***. *-*** ****** *** security *** *** ***** ******** ******** updates *** * ****** ** * years ***** ***, ****** **** ** misconfigured ***** ** ** ******* ** default, ***** *-*** **** ** **** is ******* ** ** ******** ** default ** ****** ******** *******.

IPVM Image

***** *** *****-******* ******* ** *********** Built-In ******** ********. ***** ******* **** the *** ****** ******-********* ************* *** vulnerability, ***** ******* *** *** **.*, and *** ******** ********* ********* ******* by *******.

** ******** *** ** ******* ******** version *** ***** *** ***** ****.

IPVM Image

******* *** ******* ******* ** * out ** * **********, **** ******* being *** ********* ** *** ************* in ******** *****-** ******** ******** **** Trend *****'* *** ******** ******** ******** into ***** *******. *******, **** *** not ******** ***** ****-****** ********.

*** **** **** ************* ***** ***** ***** ******** ****** App ******

IPVM Image

Worst *******

******* *** ******* ******* ** * out ** * **********, **** *****-******* results ****** * **********. ***** *** minimal ********** ** *** ******** *** performance ** **** *** ***-****-********* *******. Uniview *** *** ** *** ******* overall ** *****/*** ****** ******* *** has **** *********** *****-** ********.

IPVM Image

Summary *****

***** ** *** ********** ***** ******* tested *******, *** ***** ** **** provide ******** *********** ** **** **** (click ** *******).

IPVM Image

Differentiators ********

*** ******* ************** ******* *** **** performers *** ***** **********, ***** *** categories, *** ** ****** ****** *******. Axis, ****** *-******, *** ****** ******** offer *** ********* ******* *****/***/*** ********, with ** ******** ******* *** ***** and *** **.* ******* ** *******.

*******, ***** *** ******* *** *** HTTPS ** *******, ***** *****, *******, and ******* *** **** ******* *** v1.3 *******. ****** *******, ******* **** supports ********** *** **.*/**.*, ** **** as ******** *******. *******, ***** *********** were ******, *** ********* ****** ********* without ************** *** ******* *********.

*********** *****-** ******** **** ****** ****** varying *******, **** *** ****** ********** not ******** ***, ****** ****, *** Signed ********. *******, ********-********** ***** *** i-PRO ** *** ******* *****-***** ***** locking.

************ ************* *** ********* **** *******, with **** **** ******* ******** ** all * **********. ******** **** ** Materials (****) *** **** **** ******* (LTS) ******** *** *********** ******* ******** for **** ** ****** *************.

Fundamental *****-** ******** ********

*********** *****-** ******** ******* *********** *** based ** ********* *** ******** **** ensure ****** ****** *** ** *** device *** **** ******* ********** ******* from ******** ******.

IPVM Image

** ******* ********* *** *** **** feature ********* ** *** *************. ******* Platform ****** ***** **** **** ******* by *********, ****, *****, ****** ******* 7, *** *-*** *** *** **** typically ***** ** ***** ******-**** ** camera *****. ****** *-******, ***** ** Ambarella ***, *** *** ***** * TPM.

***** *******, ** **** **** ** prevent ***** ***** *******, *** ****** supported, **** ***** *** *-*** *** offering **. ******'* ******* * ****** after * ******** ***** ** *******.

IPVM Image

Advanced *****-** ******** ********

******** *****-** ******** ******* *********** *** based ** ************* ********** ** ******* devices **** ******* *** ****** ****** login:

IPVM Image

*********, ****, *****, ******, *********, *-***, and ******* ******* *** **** ****** 802.1x ***-***, ***** ******** ***-****, *** Uniview ******** **** ***-***, ***** ** based ** ******** *******, ***** ** less ****** **** ***. ***** ******** are ******** ******** ** *********** ******* monitoring ******* *** *** *** ********** in *** ******/** ******.

**** ***.** ************* ** *************** ** navigate ** *** *** ********* *** configure:

IPVM Image

******* ** *** ********* ** *** manufacturers ** ******** *****-** ******** ******** with ***** *****'* *** ******** ******** directly **** ***** *******:

IPVM Image

********* **** **** *** ****** ******** details ***** *** ******** *** ********* attacks. *** **** **** ************* ***** ***** ***** ******** ****** App ******.

Device ****** *******

** *** *******, **** ** ******'* attack ******* *** ******** *** ****** based ** ** ******** ** * overall **********; *** ** *************, *****/***/***, and ******** ********.

WebUI *************

***** ************* ******* *********** *** ***** on *** ** ****** ***** ********* and *********** ********* ****** *** ************** and ************* *******.

IPVM Image

*** ************* ******* *********/******** **********, ****** only ******** *********** ******* ****** ** resources ** ***** *** ****** ******* authentication, ************* ******** *** ***** ** exploiting ********* ********** *** ****** ********* and ******* ************ ** ********* ******** flaws ** *** ***** ******* *** in *** *** ****** ******.

******** (******* *****) *** **** *** the **** ************* **** ******* ********* WebUI:

IPVM Image

***** *** ******** ** ************* ****** use ***** ****** **************, ** ***** in ******* **** *********** ***** ************** solutions *** **** ************* **** ** unexpected *** ********, ***** ** * potential **** ** ******.

** ******* ** * ********** *********** WebUI ************** ******** ** ******** ************** ****** **** **** ******** on ** ****.

Default **** ********

****** *******, ** ***** **** ***** has *** ******* **** ******** **** do *** **** ******* ********* ***:

IPVM Image

******** ******** **** ************* *********** **** ********* **** ** ******** for ***** ********. **** ******** **** the '****' *** '****' ******** ****** be **** ** *** *** ********* without *** *********.

IPVM Image

Default ********** ********

****** *******, ** ***** **** *** i-PRO **** *** ******'* ****** ****** as *** ******* ********** ******** ******* forcing ** ** ****** **** ******** data **********.

IPVM Image

*-*** **** ** **** **** **** planning ** ***** * ******** ****** upon ********** ** *** ****-**** ******** roadmap.

Password ***********

****** *******, ** **** ********** **** i-PRO ********** *** **** ********** ********, along **** ********* *** *********, ***** adding *** *****.

IPVM Image

IPVM Image

**** ***** *** ****** **** *** the *********** ********/******** ** * ********** library *** ********* ** ** ****** as * *****-**-*******.

IPVM Image

*-*** **** **** **** **** *** planning ** ******* *** ********** ** password **** ** *** ****-**** ******** roadmap.

HTTPS/TLS/ ***

*****/***/*** ******* *********** *** ***** ** whether ***** ** ******* ** *******, what *** ********* *** ****, **** ciphers *** ****, *** **** ************* issues *** *****.

IPVM Image

********, ****, *****, ****** ********, ****** A-Series, *********, *-***, *** ******* **** HTTPS ******* ** ******* *** **** not ******* ******** ********* **** ** TLS **.* *** **.*. ******* **** have ********** *** **.*/**.* ******* ** default.

** ******** *** ** ******* ******** version *** ***** *** ******* ***-**** but ***** ****, ***** ******* ****-********* was *******, *** *** *********** ************* issues ******:

  • *****
    • **** *** **** ***** ******* ** default *** **** *** ******* *** v1.3,*** ******* **** *******.********* **** *** ************** ** ****** client-initiated ************* ** ********** ** ****** of ******* (***).
  • *******
    • **** *** **** ***** ******* ** default *** **** *** ******* *** v1.3,*** ******* **** *******.********* **** *** ****** ************* (*** 5746) ************** ** ****** *** ********* or ** **********

*******, ** ******* ****** *-****** ******** and ******** *** ********** ***** ***** port (***/***) **** ** *******, **** if ***** *** *** ******* ** the ******.

Disabled ********

******** ******** ******* *********** *** ***** on *** **** ********, **** ** which *** ** ******, *** ******* by ******* ** *** ** ******, which ********* *** ****** *******.

IPVM Image

**** ** ******* ** ******* ** all *** ************* ******* **** ** the ******** **** ** ****** ***** in **** *******. *******, ****** *******, we ***** *** ***** ******* ** the ***** ****** **** * *********** service *** ********, *** ***** ** no ****** ** **** **** *** ONVIF ******* ** *******. ***** ***** services *** ** ********, ** ** more ****** **** **** **** *** be.

**** *** ******* ******* ****-********* ********, our ******** ******* ** *** ****** Name ****** (***) ******* *** ********* on ***/** ***** **** *** ******* Hanwha *-****** ********, ***** *** ******** finding **** **** ******* ** *******, even ****** **** *** *** ******* in *** ****** *** ********.

** ******** *** ** ******* ******** version *** ******* ***-**** *** ***** none, ***** ***** *** *******, *** additional ******** ******** ******* ****** ***** remain:

  • ******* ***-****
    • *** ******* ********* ** ***/** *** TCP/85
  • *****
    • **** *** *** ***** ***/**** ******** enabled ** *******

*** *-*** *** ******* ***-**** **** the **** ** ******* **** **** enabled ** *******, ******* ******* ***-**** could *** ** ********.

IP ****** ******* **************

** ****** ******* ************** *********** *** based ** *** ** ******'* ********** for ******** *********** ********* ***** *** camera, ********* ** *******, *****, ******** version, ***.

IPVM Image

** ***** **** ****/**** ********* ******** is *** ********* ** ******** ** most *************, ****** *** ****, *****, Hikvision, *** *******, ***** **** ** enabled ** *******. ******* **** *** discovery ******** *** *** *** *** traversal.

****, *****, *** ********* **** ******* enabled ** *******, ***** **** *** the **** ************ **** **** *** enabled ** *******.

*** *** ******* ******, ***** ******* by ******* ***** ** *** ******** to *** *** ***** ********* ******** with * ******** ** ******* ***** with *****/*****/****** *** ********* *********** ********* protocol.

************, *** ***** *** *********, ** recommend ******* *** ******* ** ****** ***** *** ********* Devices ****** ************ **** ******** ** ** ******** 2022.

** **** ****** *********** ***** *** tested ******* ***** ***** ********* ******** which ******** **** **** *** ********.

*** ********* ******** ** ******** *** local ***. **** **, ** *********** sends *** * ******* ** * multicast ******* (*.*., ***.***.***.***) ** ********* address (*.*., ***.***.***.***), ***** *** ********* will ** **** **** ** *** sender. *******, **** **** ** ******* can **** ** ******** ** ******** IP ********* ** ****** ********* *** multicast/broadcast ******* **** *** ******** ** address, ***** ***** **** *** *** packet *** ****** ******* *** ***** network, *** *********** *** ** ********* remotely.

***** *** * ******** ** ** camera *********** ********* ******* ***** ************** that ******** **** *********** ***** *** targets.

********

** ********** *** ************, *** *******, Model, *** ******** ******* *** ** ONVIF *******:

IPVM Image

****

** ********** *** ************, *****, *** Firmware ******* *** ***** ********:

IPVM Image

*******

** ********** *** ****** ***** *** an **** *******:

IPVM Image

Cloud / *** ** ****** **********

***** *** *** ********** *********** *** based ** **** ********** *** ******* services ***** ** ******* **** ****** cloud ** *** ****** ************ ** be ********** ** ******.

IPVM Image

*****/*** ***** ******* **** ** ****, Bosch, *****, *********, *** ******* *** disabled ** ******* **** ** ******** connectivity, *.*., "***** ****". ** **** as ***-*****/*** ***** ******* **** ** Avigilon, ******, *-***, *** ******* **** also ***** ** **** ** ******** connectivity, *.*., "**** ****".

*****, *****, *** ********* **** ***** with ****** ************, ***** **** ******* devices **** **** *** **** *** not ******* *** *************.

****** ************ *** * ******** ********* set ** ************* ** ***** **** authorized ************ ******* *** ****** *** Cloud/P2P, ****** *** ** *** ****** (MiTM) ********* **********.

Uniview ******* ***********

**** ********** **** ******* **** *** use ***** *** ***** ***** ***********, making **** *** **** ********** ** MiTM ******* *** ******* ** *** from ***** ***** *** **** ** sniffed ** ************ *******, ** *** below ******* *****:

IPVM Image

Firmware *******

******** ****** ******* *********** *** ***** on *** ************ ** ***-********* ******** for ************ *** **** ** ******** updates.

IPVM Image

*** ************* ***** ***** ******** ** firmware, **** ******* **** ** ******* the ***** ***** *** *******, ***** Axis *** *** ******* ** **** the ***** ***** *** ********* ******** via ***** *******.

****, ***** **** ******* ** ***** IP ******* *** ***** *****-** ********, we ****'* ******** ********* ******** ******* or ******** *** ******** *******.

***** ** ** ******* ** ***** for **** ***** *** ***** ******** checks.

IPVM Image

**** *** ******* ***-**** ******** **** not ********* *** ***********, ***** ******* NDAA ********* *** *** ***** *************' firmware **** *********.

Manufacturer ************* *******

************ ************* ******* *********** *** ***** on *** ************'* ******* ************* ******* and *****, ********* ******** *** ******** transparency *** ****-**** ******** *******.

IPVM Image

***** *** ************* ******* ***** ******** guides *** ******** ******** ***** ****-****** licenses, ******* ***** *** ** *** disclosing ***** ****-****** ********, **** *** good ******* ** * **********, *** only ************ **** ******** * ******** bill ** ********* *** * *** bounty *******. ****, ******, *** *-*** offer *** ******** *** *********** *********** management.

Centralized *********** **********

**** ****** ************* *** *********** ******** Certificates ** *** ****** ******* ****, with ****** ********* ******** *** ********** of ******** *****. **** *** **** integrators/users ** ****** **** ************** *** secure **** ****:

IPVM Image

** ****** *** *********** ********** ** setting *** "****** ** ****" ***** to * *** ********** *** *********** was *******/*******.

Cybersecurity *****

************* ****** *** ******* ******* ** IP ****** *************, *** ** ***** that *** ****** **** *** ** camera ******** ********* **** ******** *** helpful ***********.

IPVM Image

SSH ********

****, *****, *** ********* ***** ************** to ****** *** ******* ***** ******, with **** ********* * ***** **** shell. ***** *** ********* **** ***** respective ********* ******.

****** *** ************* ** *******, **** discovered **** ** ** ******** ** an ************* ** ****** *** ****** to * ********* *****:

IPVM Image

* ********* ***** ***** **** *****, Hikvision, *** ******* **** ** ******** to *** ** ** ** *** shell **** *** ********** ********* *********, for *******, **** ******** ************ *******, troubleshooting, *** ****. **** *** ** SSH ***** **** ** ********** *********, providing * **** **** *****.

*****, *********, *** ******* **** ***** own ********* ****** ** ******* **** shells **** ***** ********* *****, *** how ** ***** ** ****** *** scope ** **** *******.

Comments (8)
MM
Michael Miller
Aug 10, 2023

**** * *** ** *** **** an ******** ****** **** *** ***** password ***** ******* ***** * *** this. ***** *** **** ****** *** firmware *** ******.

IPVM Image

(1)
bm
bashis mcw
Aug 10, 2023

*******, ***'** *****, ** ****'* *** enough *****. ******** *** **** *** corrected.

(1)
RS
Robert Shih
Aug 10, 2023
Independent

***************, *** ****** ** ** *** my ***** ******** ******.

UI
Undisclosed Integrator #2
Aug 10, 2023

* **** **** **** ******* *** a ****** **** **** ** *** it.

UD
Undisclosed Distributor #3
Aug 11, 2023

*** ** **** ******* ** ***** in *** **** ****** **** "**** 140-2"?

** ** **** **** ** ****** cameras **** *** "***** ******" ******* being ** ** ********** ****.

** ***** *** **** ** ***** for **** ******* ** ****** *****? Like ***, ***, ***, ***, ***. with ******* ****** ** **** ***.

bm
bashis mcw
Aug 11, 2023

**,

**** ** *** ******** *** **** ranking *** **** ******* **** ******, and ** ***** **** ** ** difficult ** *** ** ********** *** have ** ******* ** **** ******* about ********, ****** ******* ************* ** not ***** *********** ***** ********* ******** and ********* *** ********* ************ *** the **** ******. *************, ***** *** no **** *******, ***** *** ** try ** **** ** ****** **** these ***** ** ******* ***** ** go ****** *** *********, ** ********** test, *******, ***** ********* ******** *** what's **** *** ***.

(2)
Avatar
Dwayne Cooney
Aug 11, 2023

***** *****. ********* *********!

bm
bashis mcw
Sep 04, 2023

******: *** ****** *-****** ******** *** text ** *** ****** **** **** updated ** ******* *** ******* *****, TLS, *** ****** ******* ********. **** factory ***** ***** ***** ******* ** default, **** *** *.* *** *.*, and **** ******** *******.