Our Alarm vendor recently installed a Camect Camera Hub. Today, there have been dozens of GET call attempts from the Camect Hub IP to our internal API. There were multiple in succession, each attempting a different endpoint.
We are in process of contacting Camect to get to bottom of this, but under no circumstances should a third party piece of hardware attempt to probe our internal private API.
Has anyone else experienced this? Seems extremely suspicious to me, as there is no reason for a camera hub to fire off probing API calls. Luckily no data was compromised as we caught the issue, but it did crash our server.
Not sure if the device is compromised or if this is some baked in data probing by Camect itself.
Anyone else experience this?