Just realized my 'unhackable' Abode security hub was broadcasting my Wi-Fi password in plaintext
I was troubleshooting a weird latency issue with my Philips Hue bridge and ran a basic network scan. The Abode hub's configuration page, which I'd never properly secured after setup, was openly serving a file containing my network credentials. A single port-forwarding rule from my initial install was all it took to expose everything. I've locked it down now, but the idea that my entire system was a sitting duck for years is chilling. How often do you audit your IoT device permissions?