Skip to main content

Police body cams are scarily easy to hack into and manipulate, researcher finds

Although the jury’s still out on their effectiveness, body-worn cameras for police are generally viewed as a positive development. As part of an effort to make law enforcement more transparent, the hope is that they may be used to both protect civilians against excessive use of force, as well as safeguard police against unfounded complaints. But body cams are not infallible — as a security researcher recently revealed.

Speaking recently in Las Vegas at the annual hacker conference DefCon, Nuix cybersecurity expert Josh Mitchell demonstrated how it is possible to manipulate footage from police body cams. Mitchell’s demo used five different cameras — including Vievu, Patrol Eyes, Fire Cam, Digital Ally and CeeSc — and showcased how these could be hacked into and potentially altered. This could include deleting or altering footage or amending crucial metadata, including where and when footage was shot. It could also open the door to bad actors being able to track the location of police officers.

“I have uncovered that hacking [and] editing body camera footage is not just possible, but entirely too easy,” Mitchell told Digital Trends. “These systems have multiple unsecured attack points, and fail to have even the most basic security practices. One device allowed root telnet access without a password. I could replace videos on another device by simply using FTP to overwrite existing evidence files. The third device encrypted and password protected evidence files by using the file name as the encryption key. None of the devices I have tested digitally sign the evidence files. Furthermore, every device I have tested allows for unsecured firmware updates.”

For obvious reasons, this is bad news. Making it worse is the fact that the security vulnerabilities are not difficult to exploit. Mitchell was able to carry out his hacks without needing to develop any custom software. “The risks would be entirely dependent on the motivation of the individual to carry out the attack,” he said. “I would say that the impact and ease of exploitation are very high.”

Mitchell suggests several possible solutions to the problem, although implementing all of these would likely mean purchasing new devices. They include digitally signing all evidentiary information, digitally signing all device firmware, randomizing all SSID and MAC information, utilizing modern exploitation prevention mechanisms, and keeping bundled software up-to-date.

“Proactively, departments need to disable wireless connectivity,” he said, noting that this is not possible in all cases.

Editors' Recommendations

Luke Dormehl
I'm a UK-based tech writer covering Cool Tech at Digital Trends. I've also written for Fast Company, Wired, the Guardian…
Digital Trends’ Tech For Change CES 2023 Awards
Digital Trends CES 2023 Tech For Change Award Winners Feature

CES is more than just a neon-drenched show-and-tell session for the world’s biggest tech manufacturers. More and more, it’s also a place where companies showcase innovations that could truly make the world a better place — and at CES 2023, this type of tech was on full display. We saw everything from accessibility-minded PS5 controllers to pedal-powered smart desks. But of all the amazing innovations on display this year, these three impressed us the most:

Samsung's Relumino Mode
Across the globe, roughly 300 million people suffer from moderate to severe vision loss, and generally speaking, most TVs don’t take that into account. So in an effort to make television more accessible and enjoyable for those millions of people suffering from impaired vision, Samsung is adding a new picture mode to many of its new TVs.

Read more
AI turned Breaking Bad into an anime — and it’s terrifying
Split image of Breaking Bad anime characters.

These days, it seems like there's nothing AI programs can't do. Thanks to advancements in artificial intelligence, deepfakes have done digital "face-offs" with Hollywood celebrities in films and TV shows, VFX artists can de-age actors almost instantly, and ChatGPT has learned how to write big-budget screenplays in the blink of an eye. Pretty soon, AI will probably decide who wins at the Oscars.

Within the past year, AI has also been used to generate beautiful works of art in seconds, creating a viral new trend and causing a boon for fan artists everywhere. TikTok user @cyborgism recently broke the internet by posting a clip featuring many AI-generated pictures of Breaking Bad. The theme here is that the characters are depicted as anime characters straight out of the 1980s, and the result is concerning to say the least. Depending on your viewpoint, Breaking Bad AI (my unofficial name for it) shows how technology can either threaten the integrity of original works of art or nurture artistic expression.
What if AI created Breaking Bad as a 1980s anime?
Playing over Metro Boomin's rap remix of the famous "I am the one who knocks" monologue, the video features images of the cast that range from shockingly realistic to full-on exaggerated. The clip currently has over 65,000 likes on TikTok alone, and many other users have shared their thoughts on the art. One user wrote, "Regardless of the repercussions on the entertainment industry, I can't wait for AI to be advanced enough to animate the whole show like this."

Read more
4 simple pieces of tech that helped me run my first marathon
Garmin Forerunner 955 Solar displaying pace information.

The fitness world is littered with opportunities to buy tech aimed at enhancing your physical performance. No matter your sport of choice or personal goals, there's a deep rabbit hole you can go down. It'll cost plenty of money, but the gains can be marginal -- and can honestly just be a distraction from what you should actually be focused on. Running is certainly susceptible to this.

A few months ago, I ran my first-ever marathon. It was an incredible accomplishment I had no idea I'd ever be able to reach, and it's now going to be the first of many I run in my lifetime. And despite my deep-rooted history in tech, and the endless opportunities for being baited into gearing myself up with every last product to help me get through the marathon, I went with a rather simple approach.

Read more