HaJ3FgupAm8RrDJW3MHgT9X7Ft27eVaD
What is that? That's a hard-coded API token that Flock cameras use to identify themselves and get OAuth credentials, which can then be used to talk to Flock's production servers. Like, anyone on the internet can probably do this right now.
You’re right, but Flock (and all of these cameras) is bad for the liberty of the people, so this is good. Any time a national security threat is found, it shakes the trust in these systems, so they’re less likely to be trusted again.
Unfortunately, we’re in such a state of plutocracy and regulatory capture that even stating how big of a national security risk they are did not make any movement until now.
If you think for about two seconds about the national security implications about this, this is extremely, extremely bad.
You’re right, but Flock (and all of these cameras) is bad for the liberty of the people, so this is good. Any time a national security threat is found, it shakes the trust in these systems, so they’re less likely to be trusted again.
The worst thing is that this isn’t exactly new. The house heard about the vulnerabilities of this system in May.
https://www.youtube.com/watch?v=VKSjlZ6xyDo
Unfortunately, we’re in such a state of plutocracy and regulatory capture that even stating how big of a national security risk they are did not make any movement until now.
In other words, it only makes movement when the general public finds out and starts sabotaging their cameras?