Breaking 16:50 SpaceX bets on Nvidia to power its future artificial intelligence ambitions in space 16:10 Michael Burry warns of a potential stock market bubble and compares risks to the 1987 crash 14:52 Russian name Ivan gains popularity and surpasses Donald among US newborns 12:57 US launches investigation after passenger jet and presidential helicopter separation incident 12:43 World cup 2026: U.S. host cities demand millions in payments from FIFA 12:19 United States clarifies marriage requirements for green card and family visa applications 12:00 SpaceX reports strong revenue growth despite quarterly loss 11:30 Cyclospora outbreak in the United States causes two deaths and thousands of infections 11:11 SpaceX rocket crashes into the Moon creating a new crater 10:25 US official sees possible agreement to reopen Strait of Hormuz within days 10:15 Israel has not accepted US-backed Gaza proposal, Netanyahu says 08:15 Armed man arrested at Trump golf course in California ahead of presidential visit 07:45 Netflix restores service after global outage disrupts streaming for thousands of users 07:30 California wine crisis drives vineyard owner to burn his own vines after closing family business 07:00 Eight South Korean students detained after attempting to enter US military base 19:58 Wall Street reaches record highs amid optimism over potential Strait of Hormuz breakthrough 19:15 SpaceX rocket stage set for controlled impact on the Moon, offering valuable scientific insights 18:58 Magnificent Seven stocks rally as AI optimism boosts investor confidence

DJI Romo vacuum hack reveals global security risks

Monday 09 March 2026 - 11:50
By: Dakir Madiha
DJI Romo vacuum hack reveals global security risks

Spanish software engineer Sammy Azdoufal modified his DJI Romo robot vacuum to respond to a PlayStation 5 controller. He used AI tool Claude to reverse-engineer the DJI app's MQTT communication protocol with company servers. A backend authentication flaw let his device token access roughly 7000 vacuums and power stations across more than 20 countries.​

Azdoufal viewed live camera streams, microphone audio, 3D floor plans, precise locations, battery levels, cleaning progress, and obstacle reports from strangers' homes. A Verge journalist shared a test vacuum's serial number; Azdoufal pulled its real-time data within minutes, including room scans. In one demo, about 6700 devices reported current rooms, cleaning operations, hurdles faced, and charging spots.

Azdoufal alerted DJI, which patched the main vulnerability by February 24, 2026, blocking cross-device access. The company revoked his token, including for his own unit, and pulled the Romo model from its store two days later. Some issues persist, like PIN overrides for camera views.​

The flaw used weak device-agnostic authentication in MQTT messaging. No misuse occurred, but experts warn connected home gadgets with cameras and mics pose privacy threats. Prior incidents include 2024 Ecovacs Deebot hacks in U.S. cities, where intruders remotely drove vacuums and played slurs.​


  • Fajr
  • Sunrise
  • Dhuhr
  • Asr
  • Maghrib
  • Isha

This website, walaw.press, uses cookies to provide you with a good browsing experience and to continuously improve our services. By continuing to browse this site, you agree to the use of these cookies.