What are the consequences of leaving camera login on admin/admin?

I probably understood this at some point, but it's something I only think about now every few years when something breaks and needs replacing. What's the worst that can happen if you leave an IP camera on the default login? Wouldn't someone have to get into your network to access it?

Comments

  • In most cases, devices on your local network cannot be access from the Internet unless you specifically set this up via port forwarding, but unfortunately this isn't always the case in the real world. We have seen cameras that 1. make automatic connections to unknown Internet servers, and 2. set up automatic port forwarding to themselves in the router via UPnP. So, for cameras that can potentially have Internet access, you should always give them strong passwords. The only situation in which I would say that it's acceptable to use weak/default passwords is for cameras that cannot have Internet access (e.g. the are segregated on their own LAN), cannot be accessed by WiFi, and of course only if you trust everyone that has access to your local camera network!