FOLLOW US

Thu

June 4, 2026

Investigates October 8, 2020 4 mins read

Comcast fixes voice remote vulnerability that could be exploited by drive-by-hackers

Investigates ı By Jackie Allen

0 Comments

Cybercrime-Illustration-825×510

Comcast Corporation (NASDAQ: CMCSA) acknowledged that the Xfinity voice-activated remote had a major security flaw that could allow drive-by-hackers to record and listen clearly to consumers' private conversations in their homes. 

However, the Philadelphia-based cable giant immediately took steps and fixed the vulnerability in XR11 remote control for cable TV. 

The cable giant's XR11 is an ease-of-use remote that allows users to use their voice to find the channel or content they want instead of entering the numbers or scrolling up and down on the channel guide. 

cybersecurity company based in Tel Aviv, Guardicore discovered the vulnerability and submitted an extensive report to Comcast in April.

In response to the report, the cable giant launched an investigation into the security flaw and was able to fix it last month.

On Wednesday, Guardicore researched published their report indicating that there are 18 million units of XR11 remote controls in use across the United States. It is on “one of the most widespread remote controls in existence."

The researchers also noted that most of the past research was focused on security issues affecting interconnected devices such as "smart" speakers. According to them, the Comcast XR11 does not connect to the internet but it is equipped with a radio frequency.

Comcast remote vulnerable to drive-by-hackers

Guardicore researchers used a radio receiver and an antenna to send software updates by intercepting the daily communications between the cable box and remote. They then temporarily shut down and impersonate the box sent malicious software to make the remote record and transmit audio on command, according to the cybersecurity company's senior researcher JJ Lehmann

Researchers took over the Comcast XR11 remote from 65 feet away, but if they had better equipment it would have allowed them to deploy the attack from farther away, he added.

“This is the alarming part. It conjures up the famous ‘van parked outside’ scene in every espionage film in recent memory," the researchers stated in their report. 

Also, the researchers described how drive-by-hackers outside of a target residence could install custom firmware on the remote to force it to record audio without discovery and stream it back to the bad actors. 

The attack, named “ WarezTheRemote”, requires no interaction with the victim and would be very cheap to carry out. All the hackers would need is a low-priced RF transceiver and antenna. It can be remotely launched but requires physical distance not to exceed 65 feet.

Comcast statement outlines the “fix”

In a statement, Comcast said a comprehensive review of the security was conducted. The company found no evidence that its customers' privacy was compromised due to the vulnerability. 

12

Previous Article

Citibank ordered to pay $400M penalty over its “unsafe or unsound banking practices”

Read More
Jackie Allen
3155 Posts

Jackie Allen

Jackie is a freelance journalist and technology geek. She worked as a telecom project director for AT&T and BellSouth. Before joining the USA Herald she has written books, articles, blogs and whitepapers. Her clients include Samsung and other technology companies.

Discussion

No comments yet. Be the first to join the discussion!

Don’t Miss It
Arizona January 11, 2025
Kelly Warner Law Firm Blames USA…

In what appears as a desperate attempt to defend multiple…

By – USA Herald
Arizona January 4, 2025
Aaron Kelly Law Firm Resorts To…

Attorney Aaron Kelly and his law partner Daniel Warner are…

By – Jeff Watterson
Arizona December 12, 2024
Arizona Bar Opens Investigation on Attorney…

USA Herald recently reported on a developing story involving Attorneys…

By – Paul O'Neal
America June 2, 2026
Josh Duggar Appeal Denied as Convicted…

Josh Duggar remains behind bars after a federal judge denied…

By – Jackie Allen
America June 2, 2026
Federal Judge Lets ’86 47′ Flag…

An Obama-appointed judge just ruled a political group can keep…

By – Samuel Lopez
California News June 2, 2026
Sabrina Carpenter Granted Restraining Order Following…

Citing “severe emotional distress,” the American pop star has successfully…

By – Tyler Brooks
Entertainment June 2, 2026
The Diddy Fallout: Cassie Fights Back…

As Sean “Diddy” Combs serves time behind bars, the shockwaves…

By – Tyler Brooks
America June 2, 2026
South Carolina Jury Clears Store Owner…

A South Carolina courtroom erupted with emotion Monday after a…

By – Tyler Brooks
Business June 2, 2026
Archer Aviation: The eVTOL Takeoff Facing…

Strategic Analysis — June 2026 The electric vertical takeoff and…

By – Tyler Brooks
America June 1, 2026
Sleeping Dog Documentary Chronicles Jeremy Corbell’s…

The new documentary Sleeping Dog arrives at a pivotal moment…

By – Jackie Allen
America June 1, 2026
Kendall Jenner, Jacob Elordi and the…

I’ve been writing about royals and celebrities for 20 years.…

By – Nathan Kay
America June 1, 2026
Chaotic Midnight Shooting Leaves 3 Bloodied…

Downtown San Jose gunfire wounds 3, sparks wild building crash…

By – Tyler Brooks
America June 1, 2026
43-year-old Man Hospitalized After a Stranger…

Stranger shoots San Antonio man, 43, through door By Tyler…

By – Tyler Brooks
America June 1, 2026
Hurricane Season Starts Today – Here’s…

Texas faces 20% hurricane risk as season begins By Tyler…

By – Tyler Brooks
America June 1, 2026
U.S. Military Strike In The Eastern…

U.S. Pacific boat strike kills 3, casualties cross 200 By…

By – Tyler Brooks
America June 1, 2026
Rare Blue Micromoon Lights Up the…

Skywatchers are in for a unique celestial event as a…

By – Jackie Allen
America May 31, 2026
Murder-for-hire Ends with Life Sentence for…

A shocking Murder-for-hire case that spanned multiple states has concluded…

By – Jackie Allen
America May 31, 2026
Frank Lloyd Wright and the Taliesin…

In The Killer and Frank Lloyd Wright, veteran true-crime author…

By – Jackie Allen
America May 30, 2026
Hollywood at a Crossroads: Spencer Pratt…

Los Angeles has its primary election this Tuesday, and the…

By – Jackie Allen
America May 30, 2026
Hayden Panettiere has a Memoir About…

Hayden Panettiere is revealing the emotional toll of growing up…

By – Jackie Allen
America May 29, 2026
Blue Origin Rocket Explodes in Massive…

Blue Origin suffered a major setback Thursday night when one…

By – Jackie Allen
America May 29, 2026
Blue Origin Rocket Explodes in Massive…

Blue Origin suffered a major setback Thursday night when one…

By – Jackie Allen
America May 28, 2026
Alien Coneheads: New DNA Study Doesn’t…

The mystery surrounding the so-called Alien Coneheads of Peru has…

By – Jackie Allen
America May 28, 2026
Trump’s Alien.gov Reveal Turns Into Immigration…

INSIDE THIS REPORT What millions thought would be a historic…

By – Samuel Lopez
America May 28, 2026
Trump’s UFO files reveal mysterious flying…

The newly released UFO Files from the Trump administration have…

By – Jackie Allen
America May 28, 2026
Who’s Lying? E. Jean Carroll Faces…

Author and columnist E. Jean Carroll is once again at…

By – Jackie Allen
America May 28, 2026
Super El Niño: Will 2026 be…

Scientists across the globe are increasingly warning that a potential…

By – Jackie Allen
Business June 2, 2026
Archer Aviation: The eVTOL Takeoff Facing…

Strategic Analysis — June 2026 The electric vertical takeoff and…

By – Tyler Brooks
Featured June 2, 2026
From a Casual Night Out to…

It Doesn’t Happen Here’: Quiet Suburb Left Shattered After Fatal…

By – Tyler Brooks
Business June 2, 2026
From Folklore to High Finance: The…

Wall Street and Global Powers Monetize UFO Craze By Tyler…

By – Tyler Brooks
Business June 2, 2026
Anthropic Files Historic IPO Triggering Fierce…

Anthropic Files Historic IPO Triggering Fierce Wall Street Ethics War…

By – Tyler Brooks
Florida News June 1, 2026
Manhunt underway for Florida felon Adriel…

Manhunt underway for Florida felon Adriel Martinez after release breach…

By – Tyler Brooks
Featured June 1, 2026
Hawaii Warns Communities of Impending Kilauea…

Hawaii Warns Communities of Impending Kilauea Ashfall By Tyler Brooks…

By – Tyler Brooks
Health June 1, 2026
New Pill Doubles Survival for Pancreatic…

Pancreatic cancer pill doubles life to 13 months By Tyler…

By – Tyler Brooks
California News May 31, 2026
FDA warns public as cookie firm…

FDA warns public as cookie firm rejects urgent recall request…

By – Tyler Brooks
Health May 31, 2026
Trump orders CDC to slash childhood…

Trump orders CDC to slash childhood vaccines from 17 to…

By – Tyler Brooks
Health May 30, 2026
USDA warns Americans over Salmonella in…

USDA warns Americans over Salmonella in meat products By Tylor…

By – Tyler Brooks
America May 28, 2026
GKN Aerospace’s Biggest Battle May Not…

By Samuel López | USA Herald The immediate danger of…

By – Samuel Lopez
America May 24, 2026
Garden Grove Chemical Crisis Sparks Class…

By Samuel López | USA Herald A full-scale legal and…

By – Samuel Lopez
Featured June 1, 2026
Wembanyama in Tears: Spurs Dethrone Thunder…

Spurs dethrone Thunder in epic Game 7 road victory By…

By – Tyler Brooks
High Profile Court Cases May 31, 2026
Supreme Court signals 27 states could…

Supreme Court signals 27 states could ban trans female athletes…

By – Tyler Brooks
Sports May 31, 2026
Mauricio Pochettino sounds alarm on Chris…

Mauricio Pochettino sounds alarm on Chris Richards injury By Tylor…

By – Tyler Brooks
International May 30, 2026
USMNT star Chris Richards tears two…

USMNT star Chris Richards tears two ankle ligaments By Tylor…

By – Tyler Brooks
America May 28, 2026
“Money” Mayweather Tucks Tail: $100 Million…

Floyd Mayweather has beaten every opponent who ever climbed into…

By – Samuel Lopez
America May 27, 2026
Mackenzie Shirilla Sent Text Messages to…

Mackenzie Shirilla is once again at the center of public…

By – Jackie Allen

No posts found.

No posts found.

Signup for the USA Herald
exclusive Newsletter