I am in the process of purchasing a home, and the house that it’s looking like I am likely to buy has a Ring alarm system and camera installed. I like the idea of having burglar alarms on the windows and doors, but I do not want to use Ring. Between their ownership from Amazon and sharing data with the cops, I don’t trust them.

Are there privacy-friendly home security systems out there that don’t require an ongoing subscription? Bonus points if the devices are HomeAssistant compatible.

Lytia
link
fedilink
8
edit-2
3d

They keep data local by default

https://gizmodo.com/eufy-local-security-camera-cloud-unencrypted-scandal-1850059207

The original security issue was first noticed by security researcher Paul Moore, who noticed Eufy cameras were streaming recorded video to a cloud server on the site’s web portal, even though cloud storage wasn’t enabled. That data sent to the cloud remained unencrypted.

https://www.theverge.com/23573362/anker-eufy-security-camera-answers-encryption

Anker has finally admitted its Eufy security cameras are not natively end-to-end encrypted — they can and did produce unencrypted video streams for Eufy’s web portal.

The article also includes a response from Anker.

Yep, this is exactly the controversy I was referring to from two years ago. It only applies if you choose to upload video to their cloud, not your local storage hub.

If you read more about this, you’ll find that the vulnerability has been sensationalized by Gizmodo. A malicious actor would have to go to great lengths to obtain a very long hash string and then append that to a URL to get access to the unencrypted content. That hash string itself is not accessible, so it is highly unlikely.

With that being said, I wouldn’t recommend putting a security camera of any brand inside your home and pointing it somewhere you can’t risk being seen on the off chance of a breach, but how many people are really looking to do that anyway?

Lytia
link
fedilink
2
edit-2
3d

Thanks for the reply. While I’m sure that the video feed wasn’t the easiest to access from an outside attackers end, the fact that it was even being sent to the cloud, unencrypted, without consent, in the first place is a little more than a “minor” controversy. A company advertising a camera that works local only, and then proceeding to quietly upload everything from the camera to their servers, servers that, mind you, cost money to operate, likely have malicious intent.

While it may have been sensationalized, given this is a privacy comm, it should at least be worth mentioning.

Create a post

A place to discuss privacy and freedom in the digital world.

Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.

In this community everyone is welcome to post links and discuss topics related to privacy.

Some Rules

  • Posting a link to a website containing tracking isn’t great, if contents of the website are behind a paywall maybe copy them into the post
  • Don’t promote proprietary software
  • Try to keep things on topic
  • If you have a question, please try searching for previous discussions, maybe it has already been answered
  • Reposts are fine, but should have at least a couple of weeks in between so that the post can reach a new audience
  • Be nice :)

Related communities

much thanks to @gary_host_laptop for the logo design :)

  • 0 users online
  • 124 users / day
  • 1.05K users / week
  • 1.3K users / month
  • 4.58K users / 6 months
  • 1 subscriber
  • 4.08K Posts
  • 103K Comments
  • Modlog