Hikvision 'Phone Home' Raises Security Fears

Author: John Honovich, Published on Nov 10, 2016

The escalating attention towards Hikvision's China government ownership and Genetec's removal of Hikvision due to cyber security concerns has triggered increased scrutiny of Hikvision devices.

Hikvision's 'phone home' feature is raising particular fears as users evaluate Hikvision devices, attempting to understand what is happening and what risks this raise.

In this note, based on our testing, we examine how Hikvision 'phone home' works, its benefits and risks.

*** ********** ********* ****************'* ***** ********** *******************'* ******* ** ************ ** ***** ******** ******** *** ********* ********* ******** ** Hikvision *******.

*********'* '***** ****' ******* ** ******* ********** ***** ** ***** evaluate ********* *******, ********** ** ********** **** ** ********* *** what ***** **** *****.

** **** ****, ***** ** *** *******, ** ******* *** Hikvision '***** ****' *****, *** ******** *** *****.

[***************]

'Phone ****' - **********

**** ********* ******* *** ********* ** '***** ****' ** ********** service (*** *****, ****** ***** ** **** *** **** ** their ******** ********). *** **********, ************ ***** ******* (***** / **********) ******.

**** ********** ***** * ******* ***** *** * ****** ********* device ******** ** '***** ****' ** ***-*******.***:

******* *** **** ********* ** ******, ***** ********* ******* ** have ****** ***** *** / ******* ** ****** *** ********:

** **** ***** **** *** *** ****** (*****/***** ****) ******* ***** ********, ***** ****** *** *****/*** ****** (********************, **, ***.) ** ***.

Purpose - **** ***** / ****** ******

*** ******* ** **** ********, *** ** ***** ******* ** default, ** ** ******** ***** *** ******** ***** ** ***** video ********. **** ***, *** **** **** *** **** ** login ** *** ******'* *** *********, ** ******* / ****** configurations, ***. **** ****** ** ** *********'* ***** ********* ** connect ** ***** ******* **** ******* ***** **** ** *********. Indeed, ******* / ****** ***** ** *** ** *** **** common **** ****** *** *** ******* ***** *********.

******* ** *** ***** ** ****, **** ***** ******* **** services, *.*., ****** *******. *******, *** ************ / ********** ***** surveillance ***, **** ** ******. *** *******, **** *** ***** both **** ***** **** ******** ********* *** **** *** ********* off, ****** *********.

***** ********* *** ******* **** ** *** ** *** *** devices *** *** **** *** ****, **** ********** **** *** goal ** ****** ***** / ****** ****** *** ******* *****. However, **** ** *** ***** *** ***** **** *******, ******* of *** *** ***** *** ***** *******, *** ***** **** in ****** *** **********.

Risk - ********* / ***** ********** ******

*** **** ** ********* ******** ***** *********** ****** ** ******* networks. ********* ***** *********** **** ** ******** ***** ** *** that ****** ** ****** ***** ******* ****** * ***. ************* ******-*** ********** ***** ** **** ** ***** * ******* shell ** *****-***, ******* ********* ****** ** ** *** *******, using *** ****** ** ** **-*** ******.**** ** * **** ** *** ******** **** **** ******, though ********* *** **** *** ** *********'* ********** *********.

*** *** ****, ********* ********** **** *** ***** ******** **** for ***** ******** ********"********** ******* ***** ****** ******, ** *** **** *** *********** ****** *****." *** ********* is **** ** ********* ****** ** ****** ***** ******* **** anywhere **** ** *** *****, **** ***** ****** ** ** via *** ****** ********.

**** **** ********* *** **** ** **** ** *********** *** many ***** *** *** ******* ** ***** ******** ****** **** find *** '***** ****' ******* ** **** ******* ** ** a ****, ** ******, *** **** ** ***** *********'* ***** government *******.

Vote - **** ****** ** ****?

**** ** * *********** ****. *** **** ******* **** **, for ****, ************ * **** *********** ** **** ********** * security **** *** ****.

Comments (31)

********:

** ********* *** **** ************ (** ***** ********* *********) **** has **** ********** ******* ** ******* ******* *** ******* ** default ** *********?** **** ***** **** ****** ******* ***** ********* as ****.

* ** ********** **** ** ********** ***** ********* ** * company *** *** *** **** **** ********* **** ****** ***** this ******* *** *** ******** *** ******** ** ******** ***** that *** ***** ******* *** ** *** **** *** ********* know-how ** *** ** * **** ** * ******.

**********, * **** *** ****** *** ********** ******** ******** **** each ****** *** ******* ** **** ******* ** ********* ** those ************ *** ******* *** *********** ** *** ******** ******** them ** ***** ************ ** *** ******* "****** ****** ***-**".

** ***** ********* ** ******** ******* *** *** *** *** purchasers ** ***** "***-***" ***** **** ** ******* ** ***** homes ** ********** **** ******** ****.

****** ******** **** ******* ********* = ******** **** **** ****** does *** "**** * ****" **** **.

**** *** *** *** "****" ************, *** ***** *** ****, two ****** **** **'** *******/****** **** ***** ******** ******** ** default.

****'* * ******* ********* ***** ******, *** *******:

**** ******* ******* * ***** ****** *** ****************** ***** ******, ***** ** *** ********* ** *******.

****** ******** **** ******* ********* = ******** **** **** ****** does *** "**** * ****" **** **.

*** ** ******** **** ********:

****** ******** **** ******* ********** ******* ********* = ******** **** ones ** ********** ****** **** *** "**** * ****" **** me.

**** **** **** * **** *** ***?

***** *** *** ***** ** ***** **** ******** ************** ********** must ********.

********* *** **** ******* ***** ******** - ***** ******* *** the *********. **** *** ******** ** *******.

**********, * **** *** ****** *** ********** ******** ******** **** each ****** *** ******* ** **** ******* ** ********* ** those ************

* *** **** ** *** ******** * **** **** ******* at, *** ****'* *** *** *********** **** *** ************* **** it ***********. * **** **** ** ** ** *** ****** when ** ***** ** *** *** **** *** ** ****** a ****** **** ** ****.

* **** ** ***** ** *** ***** ***** **** ** information ******* ******.

***** ****** ********* ******* *** ** ******** *** ****** **** them ****** *** *** * ******* **** **** *** *****'* come ****** **.

*** ** *** ******* ******** *** **** *** ** ****** to **** **** *** ** *** **** ** *** *** habits ******** **** ** ********* **** ****** **** ******** ***** versions.

*** ** *** ******* ******** *** **** *** ** ****** to **** **** ***

***-*******/***** ** ******** ***** **** **** *** *** ** *** absolutely ** ****** ***, ** ***** ** ***** ******** ********, and *** ***** ****** ********* *'** ****. ******* *** "******" checkbox ** *** "******** ******" ***. ** ****** *** ********* cameras (** ****** ** *** **-*******), ***** ***'* **** ** option ** ****** **.

*'** *********** ******** ********* *******, *** **** ****'* ******** ** not *********, ***** ** ** ******** ******* ** *** ********.

* **** ***** ** *** ******* ***** *** **** ***** here

hik firmware

*** ***** *** ******** *** *** ***

** *** *** *** ******* ******* ** *** ********* ***** in **, *** ****** ***** *** ** **** ******** ***** are **** ***** **** **** *** ******** ******* **** ****** gray ******.

hik_disclaimer

* ** ******* ***** ******** *** ********.

**** **** ***** ****** ************* **** ** ****** **** ***** has **** ***** ** *** **** **** ** **** ****** firmware **** *** *****

******, ****'* **** * *** ********* ** *** **** ******* about. * ****** ** **** **** ******* **** ***** **** we've ******* ********* ***** ******** (*** **** ********) ********* *** the ******* **** ***** ** ********.

****, * **** * ******* ********* ***** *** *'* ****** sure * *** ***** ******* **. * ***** **** ** Wireshark ** ** ***** *** *** ** **** ******** *****, though.

*** * *** **** *** ******** ** **** ********* **** was?

** ******. **'** *********** *********/***** ******* ** ******* *********. *** shortest **** ** ******** ** *******, *** ******* *** **** several *******. *** ****** ********* **'* ******* **** ** *** in * ****** ** * *** *******.

...***** ****** ********* ******* *** ** ******** *** ****** **** them ****** *** *** * ******* **** **** *** *****'* come ****** **.

******** ** *** *** ***** ** ** ******** *** **** for *** ******* ** ****-********* *** ******* ** ***** *****.

** *** *** ***** ** ** ******** *** **** *** IOT ******* ** ****-********* *** ******* ** ***** *****.

******. *** ***** ** **** * *** ** *** ***** end ********* ******* *** ***** ******** ****** ** **** *********** internal ********. ** ***** *****, **** ***** **** ********* ****** no ******* ***** ********** ****.

*****, * ***** **'* * ***** **** ******* **** ********* users *** **** *** *** ** ***** ****.

***** *** *** ******** **** ** ** * ***** **** as ****, **** ********** *** *** **** **** ** ****** 'networking ******' *** ***** **** ******* *** ****** **** **** to ****, ******** * ** *** ****** **** ******.

*****, * ** ***** **** **** **** ** **** * better *** ** ******* ***** ******* **** ***** ****.

*** *******, *** ***** ******* ******* **** ******* ***** *** this ***** **** *** ******** ** ** **** ** *** users.

*******, *** ********* ******* **** *** **** ***********, ********** ** Hikvision ** ******* ***** ** *** **********. ** ***** ** safer ** ******* ** *** ****.

** ****** ***, ** *** ******* *** *** ***** ** the ******* **********, **** ***** ** * ***-*****. ** **** correct?

**, *** **** *************, ** ***** ** * **** *** any ****** ** '***** ****' ******* *** ************ ********** ******** it.

** **** *** ****, *** *******, ** ************ ***** **** would ***** **** ** ***** / ** ********* **** **** did *** ***** **** ** **** **** ** *********.

*** **** ******* *************, **** *** ******* ** ***** ** the ******* ********** ********* *** ****. ********, * ** **** many ******* ************* ***** *** ** *********** **** (******) ******** inside ***** ********.

*** ***** **** ***** * **** ***** ** *** ** three

***** *** ******* ********** ********** ******* ** **** **** ** you **** **** **** **** **YOUR government?

***** *** ******* ********** ********** ******* ** **** **** ** you **** **** **** **** ** *Foreign government?

** *** ***** **** ********** ****** ** ** *** ******** of ************* ******** *** *** ********?

**** ***** *** * **** **** *** **** **** ********* think ***** ** ** *****.

*****,

** ** **** ******* ******* ** ****:

********* ****** ******* *** ** ********** ***** ***** *********

**** *** ***** ****** ********* ******* ** ** ***** ******* attitudes.

**** * ****** *** ***** ***** ** *** * ****** ago ****** .

***** ** ****** ** **** ** ***** ******* *** ******* though, ** *** ***** *** ********** ****** *** **** **** about ****.

** ** * **** ******* *** **** ***** *** **********. That ****, ** ****** ** ********* ***. ** *** **** to **** * ***** ****** ** ****** **, ******* ** easy *** *** *** *****, * ***** **********.

**** ****, ** ****** ** ********* ***...

**, ***, **** **** ********...

** ** ******* ******* **** *** ****** *** ***** **** the *** **** * ****** ** *** ********.

**

*** ******* *** ******** ******* *** *** ******** ** ****** their's *** *****'* ********* ********. ** **! *** ******* ********** is ********** *** ******** ** ***** **** *** **** *** World's **** ********** ** *****... **** ***** ** ... **** .. ******** *** * ******* ** **** ** ******** **** restraint ****** *** **** **** ******* ********** **** ** ********** this ********* ***** ****.

****** **** ******* * ***. **'** ****** ** * *** world ***** *** ***** ** * **** ** **** ***'* watching *** ******** *** ***** ******** *** ********. ** **** learned **** *** *** (**?)**************** ******* ** **********. *** ********* **** **** ** *******. I ***** ********** **** **** ***** ****** ** ***** ******* upon * ******** ****** *** ***** ** ** ************* *** ...selling **? ....*********?????******??? ... ***!!??!!! ** **** *** ***** ***** ** *******'* be ***** *** ******* **** *** ***** ************ **** **** so **** ***** ** *** ************* **********. **** ****'* *** even **** ******* *********** *** ** **** **** * **** limited ** * ******** ********** ** ******* ** ****** ***** is ***** *** *** ****.

*** "***** ****" ******* ** ********** *******'* ** *** *******. that ** *** ****.. *** **** ** **** ****** ** the ***** ** **** **** **** ******** **** ********* ** the ****** ** ******** *** ****. ******* *** *** ********* to *** ***** *** ****** ************* ... *** **** ****** would *** *** ** ***** ****** ******** ** ******* *** communicating **** *** *****? ****! **** ****** **************** ** **** *********** **** *** *****

******* *** *** **** *** *****-*** ** **** ***** ****.

** **** **** * **** ******* ** * ******** ********** or ******* ** ****** *****

**** ** ** *** *****, ******(*.*., '*****') *** ******(*.*., '******') *** *** **** ****** *****. ****** ******* ** Taiwan *********, **** *** * ******** ****** ***** *****, *** a********** ***.

******* *** *** ********* ** *** ***** *** ****** ************* ... *** **** ****** ***** *** *** ** ***** ****** settings ** ******* *** ************* **** *** *****?

*****, *** ***** **** ** *** ***** ********* ******* ******* to **********, ** ** ***** ***** ** ************ *** *********** with **** '***** ****'.

****

** ** **** *** ********* ** **** ********* * ***** Ethnic ***** * *********. ***** ** ******* * ***** **** toward ********* ********** * ***** ****** **** ***** ************ ** similar ****** ******* *** ****** ******** ** ***** ************ *** in **** **** **** ** *** **** ***** *** **** intimate **** ** ***** ** **** *** ** **** ******** ATT **** *** **** ** **** ** * **********.

*** ***** ***** ****** ** **** **** **** ***** ** people **** *** ***** *** **** ** ************ *** *********** in **** ** ***'* ***** ***** ** **** ***** ***'* even **** **. *** **** *** ***** **** ************ ******* that *** **** ** *** ***** **** ******** **** *** average ******** *****'* ***** ***** ** **** ** ******** ** modify **** ** **/*** ***.

**** *****'* **** *** ***** ******. *** ****** ******* *** be ******* ***. *** ******* ** ****** *** ** * have **** ******* ***** ** ** ****** *******. *** ****** is ********** *** ****** ** ******. ** ****** *** ******* be ***** *** ****. *** **** ***, ****, *** ...

***** *** ********** ******** ** ******* ********** ********* *** ******** concerns. ****** *** ******* *** ****** **** **** **** ******** telecom ******** *** ** ***** ******* ********** ********* ** *********'* NBN.

******* ***** **** **** **** ** * ******* *****. ** may *** ** *** ****** ****** ** *****, * ******* bans ** *** ******** *** ** ***** *********. *'* ** with ****.

***, ****** *******'* ******** **** ***** ****** ** ** * don't *** ***** *******, *** ***** **'* **** ***** ******** to ********* *** ******* ******* *** ******** **** *** ***, I ***'* **** **'* *******'* ******** ** **** ** *** we ****** *** ****** *** ***. ** ** **********, ****'* my ******** ** *** ******* ***********.

** ***** **** * ********* ***** (***** ** ** ****** has ****** **** ** **** ** *** ****** ** ************ and ******* ** *** ********* ** *** ***** ******).

******** ***** ***** ** **** ******** ******

*** *** ****** ** **** ** *** **** ** * world ***** ******** ** ********* *****, ********-********* ***********, *********, *******, point-of-sale *********, *** *** ******* *** ******* * ******* ** data ***** ***** ****** ** *** ***** **** *** *****, where **’* ********** ** *** **********’* ******** *** ******** ******** forces ****** ******* ****’** ************ ** ** ******** ** ****’** commandeered ** **** ******** ******* ****** ** *** ******* **

****** ******* ****’** ************ ** ** ******** ** ****’** ************ it **** ******** ******* ****** ** *** ******* **

****, *** ******* *** ********** **** ***** ******* ******. ******* out *** *********.

*********** ****. ****** ***** * ******* ***** **** ******'* *** *******. *** *** ************* *** ******* ** *******, *** **** turning ** *** ** *** ******** ****'* ******* *** *** communications. * ****** ** ********** *** ******* ***** **** *****?

*** ******* *****'* **** **** * *** ** **** ** off, **** ****** *** ***** ***** *** *** ** ****** out ** **** *****:

**** ***+ *****, **% ** ******* ***** **** **** ****** not ** ******* ** *******. **** ** ********** ****** *********** and *************.

***** ** * ***** **** ******* ** **** ** * user ****** ** ******* ** ******** - **** **% ** integrators ********* ** ******* ** ******** ******* ****** **** (**%) of ************ *** **. ***/***, *********** ***** *** ********* *** this ******* *** ** *** **** ** ** ** *** default.

Login to read this IPVM report.
Why do I need to log in?
IPVM conducts unique testing and research funded by member's payments enabling us to offer the most independent, accurate and in-depth information.

Related Reports

Axis Criticizes OEMs: "When You Buy An Axis Camera, An Axis Camera Is What You Get!" on May 19, 2017
When you buy a Honeywell camera, you likely get a Hikvision, Dahua or some other company's product. The same goes for easily 100 different...
Hackable 125kHz Access Control Migration Guide on May 19, 2017
Despite being one of the most popular credentials, 125 kHz credentials are easily copied and insecure as we showed in our test results, video...
Cisco: Hikvision Hired Us on May 16, 2017
The day after Hikvision's backdoor was confirmed by the US Department of Homeland Security, Hikvision issued a press release about a...
Dahua Founder Sells $122 Millon Dahua Stock on May 15, 2017
Just a week after his sudden resignation as CEO, Dahua's Founder sold off ~$122 million of Dahua's stock. Inside this note, we examine the stock...
Hikvision Blaming Backdoor On Others, Cannot Hide From DHS on May 11, 2017
Numerous Hikvision employees are blaming their backdoor on others but Hikvision cannot hide from the US Department of Homeland Security. Blaming...
Hikvision Backdoor Confirmed on May 08, 2017
The US Department of Homeland Security's Industrial Control Systems Cyber Emergency Response Team (ICS-CERT) has issued an advisory for...
Kedacom Targeting Hikvision, Dahua Entering US on May 03, 2017
A publicly traded company with a $1 billion dollar market cap is directly aiming for Hikvision and Dahua. Kedacom, listed on the Shanghai stock...
Hack Your Access Control With This $30 HID 125kHz Card Copier on May 01, 2017
You might have heard the stories or seen the YouTube videos of random people hacking electronic access control systems. The tools that claim to do...
US Air Force Cancels Hikvision RFQ on May 01, 2017
The US Air Force has cancelled an RFQ for Hikvision video surveillance, following IPVM notifying the Air Force that Hikvision products are made in...
Bain Sells Off Uniview on Apr 30, 2017
Bain Capital has sold off Uniview to a Chinese company. Uniview is the self-proclaimed "#3" in China video surveillance behind Hikvision and...

Most Recent Industry Reports

Avigilon New COO James Henderson Profile on May 23, 2017
It has been nearly 2 years since the infamous Bryan Schmode 'resigned' as Avigilon COO. Now, Avigilon once again has a COO, promoting James...
Aura's 'Invisible Ripple' Next Gen Intrusion Detection Tested on May 22, 2017
Aura Home is a startup intrusion detection system, but it claims new, high-tech sensing that monitors the 'invisible ripples' movement creates,...
Pelco Shutting Down Clovis Line, Laying Off 200 on May 22, 2017
Pelco's Clovis facility once turned out some of the industry's most popular products. Now, the facility is mostly building "obsolete" equipment,...
IP Camera - 15 Year Shootout on May 22, 2017
How far have IP cameras come? We bought and tested 4 cameras across the past 15 years to understand how much and where performance has...
Remote Video Monitoring Providers Directory on May 19, 2017
Remote video monitoring can help integrators generate RMR plus end users lower their security costs and/or improve response to critical...
Axis Criticizes OEMs: "When You Buy An Axis Camera, An Axis Camera Is What You Get!" on May 19, 2017
When you buy a Honeywell camera, you likely get a Hikvision, Dahua or some other company's product. The same goes for easily 100 different...
Hackable 125kHz Access Control Migration Guide on May 19, 2017
Despite being one of the most popular credentials, 125 kHz credentials are easily copied and insecure as we showed in our test results, video...
Forget The Backdoor, "ALL HIKVISION PRODUCTS" On Sale on May 18, 2017
Less than 2 weeks after the Hikvision Backdoor was confirmed, Hikvision has launched a sale "ON ALL HIKVISION PRODUCTS". In this note, we examine...
Amazon Techs Installing IP Cameras Tested on May 18, 2017
In 2015, Amazon started offering video surveillance installation. Now, Amazon has made it a lot easier, with automatic add-on options and...

The world's leading video surveillance information source, IPVM provides the best reporting, testing and training for 10,000+ members globally. Dedicated to independent and objective information, we uniquely refuse any and all advertisements, sponsorship and consulting from manufacturers.

About | FAQ | Contact