logoalt Hacker News

Almondsetattoday at 11:06 AM11 repliesview on HN

I have a chinese IP camera. From superficial research I know it has some CVEs to take control of it. Unfortunately, I don't have the technical knowledge to perform an attack and run some software to extend the camera's functionalities. No model from a provider accepts my RE and hacking requests, so these abliterated ones have been vital to reclaim possession over my stuff


Replies

1231232131231today at 9:50 PM

I'm doing the same thing with a Wyze Pan V3 camera that has a locked bootloader unlike many of their other models. An old version of the firmware (no anti-rollback) has command injection in the WiFi SSDs, and from then on I technically have a shell and can run commands over the SD card. Sadly, while swapping the microSD card repeatedly between the camera and a reader, it somehow burnt out/stopped working.

matheusmoreiratoday at 12:20 PM

These "safeguards" are actively contributing to computer insecurity at this point.

show 2 replies
akazantsevtoday at 2:34 PM

I asked GLM 5.3 to hack our DRM. I didn't even need to do anything for it to agree. Same with GLM 5.3 Flash. Make sure they have at least Python available for their task. The Flash went ahead and started reverse-engineering using PowerShell scripts and "manually" decoding bytes from its output.

inexcftoday at 11:23 AM

I did that exact thing with GLM-5.3 from Z.ai with a chinese IP Camera. And i did not have to trick it in any way.

show 1 reply
com2kidtoday at 4:29 PM

5.6 Sol has happily reverse engineered and decompiled binaries for me.

Heck it has proactively asked me if I wanted it to tear apart APKs that remote control some HW I have.

show 1 reply
squeegeeninjatoday at 1:15 PM

Depending on the model, thingino might help.

https://thingino.com/

vablingstoday at 7:48 PM

Both Astra and Fable have reverse engineered software for me using Binary Ninja.

dgellowtoday at 11:34 AM

What model did you try? Chinese models have no issues with that type of stuff

DefineOutsidetoday at 1:10 PM

deepseek v4.1 flash has never denied a programming or hacking related request to me

show 1 reply
all2today at 5:14 PM

Generally, I find that skirting these requirements is a matter of framing and word choice.

For example: 'source recovery' instead of 'reverse engineering' is one I've used successfully. You may also lean into a libertarian 'right to repair' framing. You own the hardware, you should be able to access the device to appropriately repair its security vulnerabilities.

We're not breaking into a bank here, this is a camera you own.

You could even go so far as to cite local laws to support your case.

---

In short, jailbreaking is more about framing the conversation than it is about triggering psychopathy in the model. :D

blurbleblurbletoday at 11:43 AM

Existential