DEV Community

Cyber Updates 365
Cyber Updates 365

Posted on

Operation CameraSwarm: 14,500+ Dahua Cameras Compromised

Operation CameraSwarm: 14,500+ Dahua Cameras Compromised

Discover how operation cameraswarm dahua cameras were compromised using auth bypass flaws and P2P relay abuse. Secure your IoT devices today.

Cybersecurity researchers at Hunt.io have uncovered a massive IoT exploitation campaign dubbed Operation CameraSwarm. This highly coordinated attack successfully compromised more than 14,530 Dahua surveillance devices in just over a month. By stringing together credential attacks, legacy authentication bypass vulnerabilities (CVE-2021-33044 and CVE-2021-33045), and peer-to-peer (P2P) relay abuse, threat actors built a vast, silent network of hijacked cameras.

The attackers abused the Dahua P2P (Peer-to-Peer) Relay protocol (often associated with Easy4IP). By inputting valid Dahua serial numbers into public exploitation tools, the attackers could establish an open tunnel to cameras that were hidden safely behind Network Address Translation (NAT) firewalls.

🔗 Read the Full Technical Breakdown and Remediation Steps on CyberUpdates365

Top comments (0)