Skip to content
September 16, 2026
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
    • CVE Alerts
    • CVE Alert Settings
    • Pricing
  • Cyber Criminals
  • Data Leak
  • Free Tools
    • CVSS 3.1 Calculator
    • Certificate Viewer
    • DNS Lookup
    • Encoder & Hash Generator
    • IP / Subnet Calculator
    • Whois Lookup
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button
  • Home
  • News
  • Cyber Security
  • Hacker group Anonymous controls over 400 Russian cameras
  • Cyber Security

Hacker group Anonymous controls over 400 Russian cameras

Do Son March 11, 2022 2 minutes read
Anonymous Russian cameras
Add Daily CyberSecurity as a preferred source on Google

Anonymous and other hacker groups supporting Ukraine took over 400+ Russian cameras. At the same time, the real-time information of the control camera was shared on the behindenemylines.live website, and the working environment and content of many sensitive Russian agencies were broadcast live, which brought serious harm.

As the Russian-Ukrainian conflict escalates, attackers are targeting important IoT devices, especially cameras. On March 1, Anonymous claimed control of the surveillance system, including hundreds of camera devices, on Twitter, along with some clear camera screenshots.

We are #Anonymous

We have taken control of more Russian cameras near the Ukrainian border in support of #Ukraine #OpUkraine #OpRussia pic.twitter.com/rpJzIAk4iI

— AnonymousLT (@Anonymous_LTU) March 1, 2022

"A mistake made twice is a lesson not learnt." – Anonymous

Anonymous hit the Belarusian surveillance system. More than 240 cameras are now sabotaged.#Ukraine #oprussia #Anonymous #UkraineWar #Belarus #UkraineRussiaWar pic.twitter.com/zMyItfrzF4

— AnonymousLT (@Anonymous_LTU) March 1, 2022

At the same time, Anonymous claimed to use weak passwords to log into the camera system and change the password to force the camera administrator to go offline.

https://twitter.com/YounesAnonymous/status/1498735814435557377

The intrusion of cameras in normal times will affect corporate and personal privacy. During the national confrontation, attackers can monitor high-value clues such as military and material mobilization by controlling cameras. In the process of attacking camera assets, camera devices exposed to the Internet are often the first target of attackers. At the same time, attackers can conduct supply chain attacks on cameras belonging to the same manufacturer, destroy upstream servers. In order to avoid similar supply chain security incidents, countries should sort out and dispose of camera equipment exposed on the Internet in advance.

The loss of a camera asset can trigger a supply chain security incident. At present, cameras have become an indispensable monitoring device for organizations and families. The data of these devices are mostly private data, and the consequences of being invaded or illegally used are unimaginable. Attackers can use camera manufacturers to conduct supply chain attacks on cameras belonging to the same manufacturer. If the manufacturer’s cameras are widely used around the world, supply chain security incidents will occur.

It is recommended that important enterprises in various countries use spatial mapping technology to sort out their camera assets exposed on the Internet, try to avoid exposure to the Internet, and reduce the risk of being attacked. At the same time, the regulatory authorities of various countries conduct periodic sorting, risk assessment, and guidance disposal of assets within their jurisdiction to avoid direct exposure of camera assets to the public network.

Related coverage

  • A British youth hacker, who hacked CIA chief’s e-mail was sentenced to two years in prison
  • Operation ShadowCat Targets Indian Political Observers
  • Teenager Arrested in Connection to Transport for London Cyber Attack
Track all actively exploited CVEs →

Support Our Threat Intelligence

Find our threat intelligence and malware analysis helpful? Support our work today and unlock a 100% ad-free reading experience!

Buy Me a Coffee Logo Buy Me a Coffee
Select your plan
Free Pro Team

Hover over a plan to see its benefits.

Stay Ahead of the Threat

Join security professionals receiving zero-hour CVE alerts, PoC updates, and threat analysis directly to their inbox.

No spam. One actionable email per week. Unsubscribe anytime.

SHARE
Share on FacebookShare on XShare on LinkedInShare on TelegramShare on BlueskyShare on Mastodon
Written by
@DdoS · Security Researcher

Do Son

Do Son is the Founder and Editor of SecurityOnline.info. Working in cybersecurity since 2013, he reports on vulnerabilities, malware, and emerging threats, providing timely analysis to help organizations and individuals stay ahead of evolving risks.

Tags: anonymous Russian cameras

Search

Translation

CVE ALERTS
📧

Email Delivery
Get threat intel straight to your inbox.

♾️

Unlimited Vendors
Track every technology in your stack.

🚨

All New CVE Alerts
Be the first to know about new flaws.

⚙️

Custom EPSS Threshold
Filter noise, focus on real risks.

💬

Slack & Teams Webhook
Integrate directly into your SecOps.

🚫

100% Ad-Free
Enjoy an uninterrupted reading experience.

$7/mo
Subscribe Now

🚨 Active Exploits in the Wild

  • CVE-2026-89026CVSS 9.8
    The Issabel Framework, the web framework supporting Issabel PBX software, before commit b97dbaf contains a hard-coded HS256 JWT...
    Admin intel📅 Updated: Sep 16, 2026
  • CVE-2026-58704
    In Cellular Modem, there is a possible permission bypass due to a logic error in the code. This...
    Admin intel📅 Updated: Sep 16, 2026
  • CVE-2026-87886
    Exploitation of this vulnerability has been detected in the wild in limited, targeted attacks against Acronis Backup plugin...
    Admin intel📅 Updated: Sep 16, 2026
  • CVE-2026-87827CVSS 10.0
    Certain KGUARD DVR devices running vulnerable firmware expose a system command execution service on all network interfaces without...
    Admin intel📅 Updated: Sep 15, 2026
  • CVE-2026-78006CVSS 9.8
    The The Events Calendar plugin for WordPress is vulnerable to Remote Code Execution in all versions up to,...
    Admin intel📅 Updated: Sep 15, 2026
  • CVE-2026-39364
    Vite is a frontend tooling framework for JavaScript. From 7.1.0 to before 7.3.2 and 8.0.5, on the Vite...
    Admin intel📅 Updated: Sep 15, 2026
  • CVE-2026-27540CVSS 9.0
    Unrestricted Upload of File with Dangerous Type vulnerability in Rymera Web Co Pty Ltd. Woocommerce Wholesale Lead Capture...
    Admin intel📅 Updated: Sep 15, 2026
  • CVE-2026-76461CVSS 9.8
    A vulnerability in the email parsing of Cisco AsyncOS Software for Cisco Secure Email Gateway could allow an...
    CISA KEV📅 Added to KEV: Sep 14, 2026
Powered by CVE Watchtower

🔴 Live Critical Threats

  • CVE-2026-73453CVSS 10.0
    An unauthenticated P4Runtime (Programming Protocol-Independent Packet Processors Runtime) client can achieve arbitrary...
  • CVE-2026-27565CVSS 9.8
    An unauthenticated remote attacker can upload a malicious IODD file that places...
  • CVE-2026-27546CVSS 9.8
    An unauthenticated remote attacker can exploit an authentication bypass in the _account_log...
  • CVE-2026-73447CVSS 9.1
    A privileged attacker can exploit certain operation to execute arbitrary commands with...
  • CVE-2026-12793CVSS 9.8
    The JetFormBuilder — Dynamic Blocks Form Builder plugin for WordPress is vulnerable...
  • CVE-2026-14349CVSS 9.8
    The TrueBooker – Appointment Booking and Scheduler System plugin for WordPress is...
  • CVE-2026-73807CVSS 9.8
    The mySCADA myPRO Manager command API does not properly enforce authentication for...
  • CVE-2026-81855CVSS 9.1
    A hardcoded cryptographic client authentication key vulnerability exists in the robot testing...
  • CVE-2026-78225CVSS 9.0
    A hardcoded cryptographic server key vulnerability exists in the deployer-ng Update Controller...
  • CVE-2026-61560CVSS 9.8
    `@zereight/mcp-gitlab` is a Model Context Protocol server for GitLab. Prior to version...
Powered by CVE WATCHTOWER

Daily CyberSecurity

  • About SecurityOnline.info
  • Advertise with us
  • Announcement
  • Contact
  • Contributor Register
  • Login
  • Disclaimer
  • DCMA
  • Privacy Policy
  • About SecurityOnline.info
  • Advertise on SecurityOnline.info
  • Contact Us

When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

  • CVE Watchtower
  • CVE Statistics by Vendor 2026
  • Q2 2026 Report
  • Top Exploited CVEs
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube
© 2017 - 2026 Daily CyberSecurity. All Rights Reserved.