Updated
Updated · Digital Trends · Aug 7
SETracker Flaw Exposes Millions of Kids' GPS Watches to Remote Hijacking
Updated
Updated · Digital Trends · Aug 7

SETracker Flaw Exposes Millions of Kids' GPS Watches to Remote Hijacking

3 articles · Updated · Digital Trends · Aug 7

Summary

  • $30 kids' smartwatch tests showed researchers could silently track a wearer, trigger the camera and listen through the microphone without any alert on the device.
  • SETracker's authentication flaw let anyone send commands to connected watches, and even when GPS was unreliable the devices still leaked nearby Wi-Fi data that revealed location.
  • More than 70 GPS-enabled devices examined shared a small number of backend platforms and supply chains, meaning one weakness can spread across dozens of brands and millions of watches and vehicle trackers.
  • Researchers said the flaws could also expose messages, let attackers replace emergency contacts, and capture audio or video; some vendors patched parts of the issue only shortly before disclosure, while others stayed vulnerable or did not respond.

Insights

Could the cheap GPS watch you bought to protect your child actually be giving hackers a live feed of their every move?
With millions of car trackers sharing flawed backends, could a single vulnerability allow attackers to paralyze entire vehicle fleets overnight?
If dozens of seemingly independent tech brands secretly share one vulnerable system, how can consumers ever know which devices are truly secure?

The MiCODUS MV720 GPS Tracker Vulnerabilities: Global Impact, Regulatory Crackdown, and Supply Chain Security in the IoT Era

Overview

The MiCODUS MV720 GPS tracker case highlights how low-cost, insecure devices can create major risks for users and critical infrastructure worldwide. After researchers found severe flaws in 2021, the manufacturer ignored repeated warnings, forcing public disclosure and urgent advisories to disable the devices. Attackers could remotely take control of vehicles, showing the real-world dangers of weak authentication and insecure supply chains. This problem is widespread, as millions of similar trackers use shared, vulnerable cloud frameworks, and many IoT devices lack reliable update paths. In response, global regulators are now enforcing strict cybersecurity laws, shifting legal responsibility to importers and distributors to drive better security across the entire supply chain.

...