Hackers find encryption keys stored on stolen Flock camera despite company's denials — group extracts more than 27,000 clips, 1.6 million images captured in a span of 21 days from the device
- ID
- 25494
- Status
- summarized
- Published
- 17 Sep 2026, 7:30 PM
- Fetched
- 17 Sep 2026, 7:34 PM
- Provider
- Tom's Hardware
- Category
- technology
- Original URL
- https://www.tomshardware.com/tech-industry/cyber-security/hackers-find-encryption-key-stored-on-flock-camera-group-extracts-more-than-27-000-clips-1-6-million-images-captured-in-a-span-of-21-days-from-device
- Source URL
- https://www.tomshardware.com/feeds/all
Summary
- Score
- 5.0
- Created
- 17 Sep 2026, 7:36 PM
- Tags
- Audience
- developerssaas_founders
What happened
Hackers extracted encryption keys from a stolen Flock surveillance camera despite the company's denials that keys were stored on-device, enabling them to pull over 27,000 video clips and 1.6 million images captured in just 21 days. The breach demonstrates that physical access to an edge device can defeat its encryption if keys live on the device itself.
Why it matters
If you build or deploy IoT/edge devices that store encryption keys locally, assume physical theft compromises all captured data. This is a concrete reminder to use hardware-backed key stores (TPM/secure enclaves) or remote key escrow rather than storing keys in device storage, especially for cameras or sensors collecting sensitive data at scale.
Discussion angle
What's the realistic threat model for edge devices deployed in public or uncontrolled locations, and when does on-device encryption give a false sense of security versus hardware-backed key storage?