Skip to main content

Smart toilet security flaw could result in nasty surprise(s) for users

smart toilet security flaw satis
Image used with permission by copyright holder

It’s probably fair to say that the worst thing that can happen while you’re on the toilet going through the motions is discovering there’s no paper in the holder at the very moment you go to reach for it. Whether the solution is a desperate cry for help, an awkward waddle to the closet for a new roll or the creative use of one of your socks probably comes down to a combination of your location and personality, but thankfully it’s a problem which can usually be overcome without too much difficulty, if not a little embarrassment.

However, it seems that owners of a high-tech Satis toilet from LIXIL now have something else to worry about. You see, according to software security firm Trustwave, the super-advanced smart toilet can be hacked. That’s right, malicious attackers could take control of your cutting-edge crapper and get it to do just about anything, and possibly at the most inconvenient of moments.

satis toilet
Image used with permission by copyright holder

According to Trustwave’s Daniel Crowley, at the center of the security vulnerability is the accompanying My Satis Android app, which communicates with the toilet using Bluetooth, enabling the user to operate its various functions using a handset or tablet.

“The My Satis Android application has a hard-coded Bluetooth PIN of 0000,” Crowley explained. “As such, any person using the application can control any Satis toilet.”

Toilet hackers

This means the malicious toilet hacker (does such a person actually exist?) could “cause the toilet to repeatedly flush, raising the water usage and therefore utility cost to its owner.”

They could also take control of the unit’s lid, causing it to unexpectedly and repeatedly open and close, thereby distracting you from the all-important job in hand.

The air-dry function for your undercarriage could also be activated without warning, but possibly worst of all, the “posterior nozzle” water-jet bidet feature could kick into action just when you’re least expecting it, a situation which, as Crowley himself says, could cause “discomfort or distress” to the user. I’d suggest both.

The high-end Japanese-made toilet, which also plays music and deodorizes the bathroom, incorporates a fully automatic flushing action, a heated seat, a massage feature (don’t ask), and “soft lighting”.

Trustwave’s security advisory reveals it has contacted the manufacturer about the vulnerability on three occasions, but has so far heard nothing back.

Editors' Recommendations

Trevor Mogg
Contributing Editor
Not so many moons ago, Trevor moved from one tea-loving island nation that drives on the left (Britain) to another (Japan)…
The best smart home security products at CES 2022
Schlage Encode Plus with home keys phone tap to unlock.

The smart home section of CES is always worth a look to see what fascinating new tech is in the offing. For CES 2022, smart security in particular was showcasing some welcome innovations, including products that will fit perfectly in existing home security solutions from top brands like Arlo, Samsung, and more. Smart security is more competitive than ever, and the latest solution-oriented products are nothing but good news for users interested in making improvements.

Let’s take a look at what security tech we found most promising at CES 2022, and why it’s worth keeping an eye on while we’re waiting for release dates.
Arlo Security System

Read more
This South Korean smart home hack is one more reason you should secure your home
Alexa listening indicator.

While most Americans were trying to take advantage of Black Friday sales last weekend, hackers in South Korea pulled off what is perhaps the most damaging hack in smart home history. The as-yet-unidentified hackers recorded photo and video from more than 700 different apartment complexes and held it ransom or sold it outright for Bitcoin.

The entire incident is the stuff of nightmares -- the realization of fears about the smart home industry and what it means to allow cameras and other recording devices into the home without sufficient safeguards in place.

Read more
Surprise! Amazon is having a flash sale on must-have smart home tech today
blink mini indoor camera white set in a living room blurred in the background

Spruce up your home tech during the Amazon flash sale going on now. Tons of in-demand items got huge markdowns for this event, which means you can save even more on the smart home devices you've been wanting. Stream your favorite TV shows easily with the Firestick, or keep an eye on your home with the Blink mini security camera. Get a key-free touchscreen door lock for easier and more secure home entry, and keep your floors spotless with help from Anker's robot vacuum cleaner. Whatever you're shopping for, save big on smart devices to make your home more intuitive and secure. We've rounded up some of the best smart home tech deals going on during the flash sale below.
Wyze Smart Scale Digital Bathroom Scale -- $28, was $40

Track your health and fitness metrics at home with the wireless Wyze Smart Scale Digital Bathroom Scale. This scale not only measures body weight up to 400 pounds, but it also gives you information on BMI, body fat percentage, heart rate, and body composition. Download the app, and sync your phone, scale, and other fitness tracking apps to get tracking information on all of your personal health stats in one place. Get a complete body composition analysis at home every time you step onto the scale! This smart scale can automatically recognize up to eight separate users, so the whole family can share in the health journey.

Read more