Philips warns clinicians of remote-access vulnerabilities in its imaging software

Dutch technology vendor Philips has issued a security advisory to warn clinics that motivated hackers could get ahold of sensitive patient data by exploiting recently discovered vulnerabilities in its IntelliSpace Portal imaging software. As part of it… Continue reading Philips warns clinicians of remote-access vulnerabilities in its imaging software

Create Cheap Philips Hue Compatible Devices

The Philips Hue range is a great way to add wirelessly controllable lighting to your home, but the protocol is proprietary which makes it difficult to add our own custom hardware. [Peter] found a way to create his own Hue compatible devices based on cheap JN5168 modules that are able to connect to the Hue bridge. This means you can roll out your own lamps using cheap RGB or White LEDs, a power supply and the JN5168 Zigbee Light Link module.

He started off by trying to clone a Zigbee Light Link device to a MeshBee — Seeed studio’s open …read more

Continue reading Create Cheap Philips Hue Compatible Devices

Root on the Philips Hue IoT Bridge

Building on the work of others (as is always the case!) [pepe2k] managed to get root access on the Philips Hue Bridge v2 IoT light controller. There’s nothing unusual here, really. Connect to the device over serial, interrupt the boot process, boot up open firmware, dump the existing firmware, and work the hacker magic from there.

Of course, the details are the real story. Philips had set U-Boot to boot the firmware from flash in zero seconds, not allowing [pepe2k] much time to interrupt it. So he desoldered the flash, giving him all the time in the world, and allowing …read more

Continue reading Root on the Philips Hue IoT Bridge