Yes! We have had to set limits on DNS inquiries to minimize the bad-guy (DDoS) activities of Wyze cams. Your experience is typical. I have communicated with the Wyze tech folks about this and have been completely blown off. One can only conclude this behavior is intentional.
I’m wondering if we will see Wyze on the same list of miscreants as Hikvision, China Mobile, Huawei, etc.
I am sorry this is happening. I would like to ask a few questions to help them narrow down this issue. Is it happening from all cams or a specific model? Are both the cam firmware and app versions up to date?
For those that landed here from a search engine - the temporary fix that worked for me was to hard power cycle the unit by removing power completely. The software power cycle was insufficient.
I’ve only had this happen a few times, and my dns server usually rate-limits it but it’s still obnoxious because my APs are only 2x2 MIMO, so while the bandwidth might be insignificant, the channel utilization is not. I logged over 2 million (!) requests in 9 hours.
Strangely, this only happened on one of 4 Wyze devices in close proximity - 2 v3 cameras and the Wyze plugs that exist to remotely power cycle them.
What’s the status of this issue? This issue was reported 1 year ago. Fix this already.
“In 2022, security firm Bitdefender announced that Wyze had discontinued WyzeCam v1 because of a security vulnerability that Bitdefender had reported to Wyze three years before, which is an unusually long time for a vulnerability to go unreported to the public. Wyze did not make any public announcement about the vulnerability.”
Wyze products are carried at The Home Depot, the 17th largest company in the United States by revenue as of 2022. I’m guessing Wyze Labs is doing okay with revenue. Do you need to hire more software developers?
It was fixed months ago. And it was never possible for a remote attack using that quite minor vulnerability. Users were safe. Wyze just sat on it way too long.
Everything is always kept updated. The behavior continues but appears not to be as bad as previously noted. We have set DNS rate inquiries to a max of 100 in 10 minutes – this is insufficient for Wyze cams.
One thing interesting: When we grab outgoing DNS inquiries and redirect them to our PiHole the cameras show off-line – but they are not.
Is this why my ping has almost doubled in gaming? Since I installed the Cam OG my ping in all my game lobbies have went from 60-100ms depending server locations to now near 200ms for some. Over Wi-Fi or Ethernet. Still the same. Speeds are 30down/10up.