Security issues with Zigbee

Looks like during the annual BlackHat security conference in Las Vegas, some news was released about Zigbee devices:

Tests with light bulbs and even door locks have shown that the vendors of the tested devices implemented the minimum of the features required to be certified, including the default TC fallback key. No other options were implemented and available to the end user.

I don’t have any zigbee gear, so can’t really test. The Qolsys does support zigbee…hoping it has no issues but I might have to experiment when I have some time in a few weeks.

Full paper is at https://www.blackhat.com/docs/us-15/materials/us-15-Zillner-ZigBee-Exploited-The-Good-The-Bad-And-The-Ugly-wp.pdf

Qolsys only uses the optional 915 mhz frequency Zigbee for the Image Sensor. It doesn’t support Zigbee for automation.

Interesting. I figured since the radio was there, they’d do automation with it in time with a software update…

Oddly enough, Qolsys says otherwise in this article http://www.hometoys.com/article/2015/12/smart-home-interview--qolsys/32912/

Qolsys - “Z-Wave and Zigbee for home control and smart home devices”

See here for more info.