Cleartext HTTP/RTSP in Botslab G980H Dashcam Leaks Video and Location to WiFi Snoops
AI analysis
The Botslab G980H dash camera firmware transmits sensitive data—including stored recordings, live video over RTSP, GPS location, images, and diagnostic logs—over unencrypted HTTP and RTSP connections between the camera and its companion mobile app. An attacker who can intercept traffic on the camera's WiFi network (for example, the camera's own hotspot or a shared network it joins) can passively capture this data with no credentials and no user interaction, exposing live and recorded video, audio, and location history. Only owners of the G980H model and the passengers/networks around them are affected, and impact is limited to confidentiality. There is no known public proof of concept, no confirmed exploitation in the wild, and the flaw is not in CISA's Known Exploited Vulnerabilities catalog.
What to do: Check the Botslab mobile app and vendor site for a firmware update for the G980H and apply it promptly, since no fixed version is listed in the advisory. In the meantime, avoid pairing the camera or streaming on shared or public WiFi, change any default hotspot/app credentials, and disable live viewing when not needed. Treat video, audio, and GPS data as potentially interceptable by anyone within WiFi range until a patched firmware is confirmed installed.
Affected
| Botslab G980H Dash Camera | All firmware versions (the advisory does not specify fixed or affected version ranges) |
Estimated exposure
moderate≈ tens of thousands of devices (order of magnitude), clearly an estimate — This is a single consumer dashcam SKU from a smaller brand with no published sales or active-install figures, so the estimate assumes typical lifetime sales for a mid-tier model; note that dashcams are rarely internet-exposed, so…
Order-of-magnitude estimate by the model from install counts, market share and public scan data it knows; verify before quoting.
Description
The Botslab G980H dash camera firmware transmits sensitive information over unencrypted HTTP and RTSP connections. An attacker capable of intercepting communications on the device's WiFi network could obtain stored recordings, live video, location information, images, diagnostic logs, or other sensitive information exchanged between the device and its mobile application.