RobotRisk Autonomous Systems Incident & Risk Register
RobotRiskEcovacs › ~Aug 2024

Researchers demonstrate Bluetooth/PIN flaw letting attackers hijack Ecovacs Deebot cameras and mics

S2 · ~Aug 2024 · Ecovacs

Record

CompanyEcovacs
IndustryConsumer robotics
Type(s)cyber
Date~Aug 2024 (month precision)
Time of daynot documented
Locationno physical site (recall / fleet-wide / aggregate record)
Severity (minor injury or single-unit damage)
Scalemultiple Deebot models
Confidencehigh
Verified flagCited source on file; not independently re-verified

Summary

At DEF CON 32, security researchers Dennis Giese and Braelynn Luedtke showed that a weak Bluetooth PIN implementation in Ecovacs Deebot robots let attackers connect from up to roughly 450 feet away and activate the onboard camera and microphone without the owner's knowledge.

Primary source

Security Affairs

Publisher: Security Affairs · Retrieved: 2026-09-16

Supporting source rows (1)
DateSupporting source rowPublisherLink
~Aug 2024 Researchers demonstrate Bluetooth/PIN flaw letting attackers hijack Ecovacs Deebot cameras and mics Security Affairs Security Affairs

Ecovacs other incidents timeline

Consumer robotics context

cyber context

Ecovacs industry position

Related incidents

Other Ecovacs entries

Report a correction

Open a prefilled GitHub issue

Also from Critical Systems Analysis: CSA - functional safety engineering · Company directory · FSTalent - functional safety jobs