Sonos, Canon, HP Devices Hacked At Pwn2Own 2021

Share post:

Security researchers collected a total of $362,500 on the first day of Pwn2Own 2021. Pwn2Own 2021 is the annual computer hacking competition in which participants are challenged to exploit widely-used software and mobile devices with previously unknown bugs.

Attendees were able to hack Canon, HP, Western Digital, Cisco, Sonos, TP-Link and NETGEAR printers, routers, NAS devices and speakers on the first day of the four-day event, which attracted 22 contestants who signed up for a total of 58 entries.

While security researchers can win a total of up to $200,000 for a single challenge, $150,000 cash prizes and a $50,000 bonus in the event that their iPhone or Pixel browser runs exploits with kernel-level privileges, the DEVCORE and THEORI teams were the biggest winners on the first day.

DEVCORE, a team of Orange Tsai, Angelboy and Meh Chang won a total of $100,000 after taking over several devices, including the Sonos One Speaker, Canon ImageCLASS MF644Cdw and HP Color LaserJet Pro MFP M283fdw printers.

The THEORI team won $80,000 for successfully hacking Western Digital’s My Cloud Pro Series PR4100 and 3TB My Cloud Home Personal Cloud NAS devices.

For more information, read the original story in Bleeping Computer.

SUBSCRIBE NOW

Related articles

North Korean hacker infiltrates US security vendor, loads malware

KnowBe4, a US-based security vendor, unknowingly hired a North Korean hacker who attempted to introduce malware into the...

CrowdStrike releases an update from initial Post Incident Review: Hashtag Trending Special Edition for Thursday July 25, 2024

Security vendor CrowdStrike released an update on from their initial Post Incident Review today. The first, and most surprising...

Security vendor CrowdStrike issues an update from their initial Post Incident Review

Security vendor CrowdStrike released an update from their initial Post Incident Review (PIR) today. The company's CEO has...

CrowdStrike CEO summoned by Homeland Security committee over software disaster

CrowdStrike CEO George Kurtz has been called to testify before the U.S. House Committee on Homeland Security following...

Become a member

New, Relevant Tech Stories. Our article selection is done by industry professionals. Our writers summarize them to give you the key takeaways