<?xml version='1.0'?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:georss="http://www.georss.org/georss" xmlns:atom="http://www.w3.org/2005/Atom" >
<channel>
	<title><![CDATA[PublMe - Space: Posted Reaction by PublMe bot in PublMe]]></title>
	<link>https://publme.space/reactions/v/64413</link>
	<atom:link href="https://publme.space/reactions/v/64413" rel="self" type="application/rss+xml" />
	<description><![CDATA[]]></description>
	
	<item>
	<guid isPermaLink="true">https://publme.space/reactions/v/64413</guid>
	<pubDate>Tue, 03 Mar 2026 22:00:58 +0100</pubDate>
	<link>https://publme.space/reactions/v/64413</link>
	<title><![CDATA[Posted Reaction by PublMe bot in PublMe]]></title>
	<description><![CDATA[
<p>Exploring Security Vulnerabilities in a Cheapo WiFi Extender</p>
<div><img width="800" height="452" src="https://hackaday.com/wp-content/uploads/2026/03/temu_wifi_extender_landing_page_low_level_youtube.jpg?w=800" alt="" srcset="https://hackaday.com/wp-content/uploads/2026/03/temu_wifi_extender_landing_page_low_level_youtube.jpg 1328w, https://hackaday.com/wp-content/uploads/2026/03/temu_wifi_extender_landing_page_low_level_youtube.jpg?resize=250, 141 250w, https://hackaday.com/wp-content/uploads/2026/03/temu_wifi_extender_landing_page_low_level_youtube.jpg?resize=400, 226 400w, https://hackaday.com/wp-content/uploads/2026/03/temu_wifi_extender_landing_page_low_level_youtube.jpg?resize=800, 452 800w" data-attachment-id="997235" data-permalink="https://hackaday.com/2026/03/03/exploring-security-vulnerabilities-in-a-cheapo-wifi-extender/temu_wifi_extender_landing_page_low_level_youtube/" data-orig-file="https://hackaday.com/wp-content/uploads/2026/03/temu_wifi_extender_landing_page_low_level_youtube.jpg" data-orig-size="1328,750" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="temu_wifi_extender_landing_page_low_level_youtube" data-image-description="" data-image-caption="" data-medium-file="https://hackaday.com/wp-content/uploads/2026/03/temu_wifi_extender_landing_page_low_level_youtube.jpg?w=400" data-large-file="https://hackaday.com/wp-content/uploads/2026/03/temu_wifi_extender_landing_page_low_level_youtube.jpg?w=800"></div><p><a rel="nofollow" href="https://hackaday.com/wp-content/uploads/2026/03/temu_wifi_extender_product_page_low_level_youtube.jpg" target="_blank"><img data-attachment-id="997236" data-permalink="https://hackaday.com/2026/03/03/exploring-security-vulnerabilities-in-a-cheapo-wifi-extender/temu_wifi_extender_product_page_low_level_youtube/" data-orig-file="https://hackaday.com/wp-content/uploads/2026/03/temu_wifi_extender_product_page_low_level_youtube.jpg" data-orig-size="452,452" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="temu_wifi_extender_product_page_low_level_youtube" data-image-description="" data-image-caption="" data-medium-file="https://hackaday.com/wp-content/uploads/2026/03/temu_wifi_extender_product_page_low_level_youtube.jpg?w=400" data-large-file="https://hackaday.com/wp-content/uploads/2026/03/temu_wifi_extender_product_page_low_level_youtube.jpg?w=452" src="https://hackaday.com/wp-content/uploads/2026/03/temu_wifi_extender_product_page_low_level_youtube.jpg?w=400" alt="" width="400" height="400" srcset="https://hackaday.com/wp-content/uploads/2026/03/temu_wifi_extender_product_page_low_level_youtube.jpg 452w, https://hackaday.com/wp-content/uploads/2026/03/temu_wifi_extender_product_page_low_level_youtube.jpg?resize=250, 250 250w, https://hackaday.com/wp-content/uploads/2026/03/temu_wifi_extender_product_page_low_level_youtube.jpg?resize=400, 400 400w"></a>If all you want is just a basic WiFi extender that gets some level of network connectivity to remote parts of your domicile, then it might be tempting to get some of those $5, 300 Mbit extenders off Temu as [Low Level] recently did for a security audit. Naturally, as he shows in the subsequent <a rel="nofollow" href="https://www.youtube.com/watch?v=KsiuA5gOl1o" target="_blank">analysis of its firmware</a>, you really don’t want to stick this thing into your LAN. In this context it is also worrying that the product page claims that over a 100,000 of these have been sold.</p><p>Starting the security audit is using <code>$(reboot)</code> as the WiFi password, just to see whether the firmware directly uses this value in a shell without sanitizing. Shockingly, this soft-bricks the device with an infinite reboot loop until a factory reset is performed by long-pressing the reset button. Amusingly, after this the welcome page changed to the ‘Breed web recovery console’ interface, in Chinese.</p><p>Here we also see that it uses a Qualcomm <a rel="nofollow" href="https://www.qualcomm.com/wi-fi/products/qca9531" target="_blank">Atheros QCA953X</a> SoC, which incidentally is OpenWRT compatible. On this new page you can perform a ‘firmware backup’, making it easy to dump and reverse-engineer the firmware in Ghidra. Based on this code it was easy to determine that full remote access to these devices was available due to a complete lack of sanitization, proving once again that a lack of input sanitization is <a rel="nofollow" href="https://hackaday.com/2024/02/29/the-white-house-memory-safety-appeal-is-a-security-red-herring/">still the #1 security risk</a>.</p><p>In the video it’s explained that it was tried to find and contact a manufacturer about these security issues, but this proved to be basically impossible. This leaves probably thousands of these vulnerable devices scattered around on networks, but on the bright side they could be nice targets for OpenWRT and custom firmware development.</p><p></p><p></p>]]></description>
	<dc:creator>PublMe bot</dc:creator>
</item>

</channel>
</rss>