• About & Contact Us
  • SEO Community

Ulancer.com

    • Latest Stories

      What is new?

    • Meet the startups that pitched at EF’s 10th Demo Day in London

      September 27, 2018

    • Rally Rd., the app that lets you invest in classic cars, raises $7M Series A

      September 27, 2018

  • News
  • How to’s
  • Writing
  • Startups
  • Jobs
  • More
    • CMS Tools
    • APPS
    • Web Resources
      • Advertising
      • Firefox
      • Scripts
      • Tools

Certain Sonos and Bose models can be accessed by hackers to play sound remotely

  • by Ulancer Contributor
  • In News
  • — 27 Dec, 2017


Researchers at Trend Micro have discovered a potential hack opening key speakers from Sonos and Bose to remote access. As first reported by Wired, the Sonos Play:1, Sonos One, and Bose SoundTouch systems can be located and taken over through an online scan, letting hackers play music through the system.

For now, the access appears to be largely prank-based. The researchers, naturally, used the vulnerability to play Rick Astley and mess with a nearby Alexa-enabled system with commands, a la South Park. Another slightly more ominous report from a Sonos forum was written by a user who was understandably freaked out when the sound of creaking doors, crying babies and breaking glass started playing through her system at top volumes.

On the upside, the number of vulnerable systems is relatively limited. The researchers found between 2,000 and 5,000 impacted Sonos system and less than 500 Bose speakers. A spokesperson for Sonos told TechCrunch, “We’re looking into this more, but what is being referenced is a misconfiguration of a user’s network that impacts a very small number of customers that may have exposed their device to a public network. We do not recommend this type of set-up for our customers. In the near term, anyone concerned about this issue should ensure their Sonos system is set-up on their secured internal network.”

Sonos has also issued a patch to help plug the hole. We’re still awaiting an official response from Bose.