Breaking 16:50 Markets plunge as Pentagon eyes decisive strike on Iran 16:20 Dollar holds steady as Iran conflict reshapes Fed rate outlook 16:00 Pakistan confirms role in US-Iran indirect talks 15:20 Iran earns $139 million a day from oil as Hormuz crisis boosts revenue 15:12 FIFA opens last-minute World Cup 2026 ticket sales on April 1 15:00 Al Jaber calls Iran's Strait of Hormuz blockade "economic terrorism" during U.S. tour 14:05 Freeport LNG CEO warns Iran war risks delaying US export projects 14:00 Commodity ETFs see record $11 billion outflows in March 13:50 EBRD warns Iran war may cut growth by 0.4 points 13:20 Used EV sales surge across Europe as Iran war spikes fuel prices 12:40 Bridgewater weathers macro hedge fund rout amid Iran war 12:20 War in Iran disrupts $19 billion used car trade in Asia 11:50 Rice University researchers recover 95% of battery metals using plasma and citric acid 11:20 Gold falls below $4,500 as Iran rejects U.S. ceasefire plan, oil holds above $100 11:20 IBM quantum computer matches lab data in materials simulation 11:17 Dollar slips in Asia as Iran diplomacy doubts trim Fed hike bets 11:00 US lawmakers propose bill to ban Chinese humanoid robots in government 10:20 Google TurboQuant breakthrough shakes memory chip stocks amid AI shift 10:05 Salesforce shares fall as Anthropic expands Claude AI capabilities 09:40 Asian markets fall as Iran rejects us ceasefire proposal 08:50 Stanford study links us emissions to $10 trillion global climate damage 18:30 Portkey open-sources AI gateway handling 1 trillion tokens daily 18:15 Asia imposes fuel rationing and shorter workweeks amid Iran war crisis 18:05 Jet fuel tops $4 per gallon as airlines raise fares worldwide

DJI Romo vacuum hack reveals global security risks

Monday 09 - 11:50
By: Dakir Madiha
DJI Romo vacuum hack reveals global security risks

Spanish software engineer Sammy Azdoufal modified his DJI Romo robot vacuum to respond to a PlayStation 5 controller. He used AI tool Claude to reverse-engineer the DJI app's MQTT communication protocol with company servers. A backend authentication flaw let his device token access roughly 7000 vacuums and power stations across more than 20 countries.​

Azdoufal viewed live camera streams, microphone audio, 3D floor plans, precise locations, battery levels, cleaning progress, and obstacle reports from strangers' homes. A Verge journalist shared a test vacuum's serial number; Azdoufal pulled its real-time data within minutes, including room scans. In one demo, about 6700 devices reported current rooms, cleaning operations, hurdles faced, and charging spots.

Azdoufal alerted DJI, which patched the main vulnerability by February 24, 2026, blocking cross-device access. The company revoked his token, including for his own unit, and pulled the Romo model from its store two days later. Some issues persist, like PIN overrides for camera views.​

The flaw used weak device-agnostic authentication in MQTT messaging. No misuse occurred, but experts warn connected home gadgets with cameras and mics pose privacy threats. Prior incidents include 2024 Ecovacs Deebot hacks in U.S. cities, where intruders remotely drove vacuums and played slurs.​


  • Fajr
  • Sunrise
  • Dhuhr
  • Asr
  • Maghrib
  • Isha

This website, walaw.press, uses cookies to provide you with a good browsing experience and to continuously improve our services. By continuing to browse this site, you agree to the use of these cookies.