Major Security Flaw with SmartThings, OAuth, and Zigbee

If you’ve installed any SmartApps into your SmartThings ecosystem, you are at risk.

I’m surprised to see relatively little coverage of the University of Michigan study into the SmartThings ecosystem and the inherent security flaws in the ecosystem.

We are all trusting various aspects of our home security, privacy, and living conditions to our Internet of Things. Having garage doors, door locks, cameras, door sensors, and lights attached to the ecosystem puts everyone at risk until these issues are addressed, or mitigated.

This issue has been discussed at length here. Mods please merge thread.

U of M study

And here:

ST Response


