What is it about?

We perform the first security assessment of private Xiaomi electric scooters, including how they communicate with the Xiaomi companion app. We discover several vulnerabilities, and exploit them in four proximity and remote attacks, which break security, privacy and safety. We also provide an open-source toolkit to execute the attacks and perform further security analysis on the Xiaomi e-scooter ecosystem.

Featured Image

Why is it important?

Our work is the first to analyze the security, privacy and safety of private Xiaomi electric scooters. We break the e-scooter locking mechanism, and the Xiaomi custom and proprietary Pairing and Session Establishment protocols.

Read the Original

This page is a summary of: E-Spoofer: Attacking and Defending Xiaomi Electric Scooter Ecosystem, May 2023, ACM (Association for Computing Machinery),
DOI: 10.1145/3558482.3590176.
You can read the full text:

Read

Resources

Contributors

The following have contributed to this page