• Home
  • Latest
  • Fortune 500
  • Finance
  • Tech
  • Leadership
  • Lifestyle
  • Rankings
  • Multimedia

Trendingnow

1

The Pentagon said Iran War costs $29 billion, but the real cost is closer to $200 billion—and counting

2

After forcing workers back to the office, Goldman Sachs and JPMorgan Chase are now letting their staff work remotely—but only for the World Cup

3

Now worth $200 million, Sarah Jessica Parker credits being ‘one of eight kids that struggled financially’ for her hunger, ambition, and work ethic

1

The Pentagon said Iran War costs $29 billion, but the real cost is closer to $200 billion—and counting

2

After forcing workers back to the office, Goldman Sachs and JPMorgan Chase are now letting their staff work remotely—but only for the World Cup

3

Now worth $200 million, Sarah Jessica Parker credits being ‘one of eight kids that struggled financially’ for her hunger, ambition, and work ethic
Retail

Security Flaws in Some Smartwatches Sold on Amazon May Let Strangers Track Kids

By
Andrew Martin
Andrew Martin
and
Bloomberg
Bloomberg
Down Arrow Button Icon
By
Andrew Martin
Andrew Martin
and
Bloomberg
Bloomberg
Down Arrow Button Icon
December 11, 2019, 8:30 AM ET
Add Fortune on Google for similar content.

Security researchers discovered vulnerabilities in cheap smartwatches for children that make it possible for strangers to override parental controls and track kids.

Rapid7 Inc., a cybersecurity firm based in Boston, purchased three smartwatches on Amazon.com, costing from $20 to $35, according to Deral Heiland, research lead for IoT technology. He said the models — GreaSmart Children’s SmartWatch, Jsbaby Game Smart Watch and SmarTurtle Smart Watch for Kids — were picked randomly from dozens for sale on Amazon and marketed as appropriate for grade school-aged kids.

All three devices offer location tracking, messaging and chat features. They were manufactured in China and shared nearly identical hardware and software. They also had similar security issues, Rapid7 found.

The watches let authorized users view and change configuration details by texting the watch directly with certain commands. In practice, this didn’t work and “unlisted numbers could also interact with the watch,” Rapid7 said in a report.

This security issue could be fixed with a vendor-supplied firmware update, but “such an update is unlikely to materialize given that the providers of these devices are difficult to impossible to locate,” the cybersecurity firm added.

The watches have a default password of “123456,” but one of the watch’s manuals doesn’t mention the password, according to the researchers. Another mentioned the password in a blog but not in its printed material. The third doesn’t characterize the numbers as a password nor does it provide instructions on how to change it, according to the researchers.

“Given an unchanged default password and a lack of SMS filtering, it is possible for an attacker with knowledge of the smartwatch phone number to assume total control of the device, and therefore use the tracking and voice chat functionality with the same permissions as the legitimate user (typically, a parent),” Rapid7 said in its report.

An unauthorized user could shut off all the safety protocols a parent had set up on the smartwatch, Heiland said.

Rapid7 said its researchers weren’t able to contact the sellers nor what they believe is the manufacturer of the watches, a Chinese company called 3g Electronics Co. The company didn’t respond to a message from Bloomberg News seeking comment.

The GreaSmart Children’s SmartWatch is no longer for sale on Amazon, according to Rapid7. GreaSmart, Jsbaby, SmarTurtle didn’t respond to a requests for comment. Oltec, a merchant that sells the SmarTurtle watch on Amazon, didn’t respond to a message sent via Amazon’s site.

“Consumers that are concerned with the safety, privacy, and security of their IoT devices and the associated cloud services are advised to avoid using any technology that is not provided by a clearly identifiable vendor, for what we hope are obvious reasons,” Rapid7 warned in its report.

More must-read stories from Fortune:

—The ‘princess’ and the prisoner: How China’s Huawei lost public support at home
—2020 Crystal Ball: Predictions for the economy, politics, technology, etc.
—China’s lessons from the bike sharing bust may hang over its A.I. boom
—Russia and China have built a new gas pipeline that has everything—except profit
—Why it’s still so hard to sell medical marijuana in Asia
Catch up with Data Sheet, Fortune’s daily digest on the business of tech.

About the Authors
By Andrew Martin
See full bioRight Arrow Button Icon
By Bloomberg
See full bioRight Arrow Button Icon
Add Fortune on Google for similar content.

Latest in Retail

Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025

Most Popular

Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Fortune Secondary Logo
Rankings
  • 100 Best Companies
  • Fortune 500
  • Global 500
  • Fortune 500 Europe
  • Most Powerful Women
  • World's Most Admired Companies
  • See All Rankings
  • Lists Calendar
Sections
  • Finance
  • Fortune Crypto
  • Features
  • Leadership
  • Health
  • Commentary
  • Success
  • Retail
  • Mpw
  • Tech
  • Lifestyle
  • CEO Initiative
  • Asia
  • Politics
  • Conferences
  • Europe
  • Newsletters
  • Personal Finance
  • Environment
  • Magazine
  • Education
Customer Support
  • Frequently Asked Questions
  • Customer Service Portal
  • Privacy Policy
  • Terms Of Use
  • Single Issues For Purchase
  • International Print
Commercial Services
  • Advertising
  • Fortune Brand Studio
  • Fortune Analytics
  • Fortune Conferences
  • Business Development
  • Group Subscriptions
About Us
  • About Us
  • Press Center
  • Work At Fortune
  • Terms And Conditions
  • Site Map
  • About Us
  • Press Center
  • Work At Fortune
  • Terms And Conditions
  • Site Map
  • Facebook icon
  • Twitter icon
  • LinkedIn icon
  • Instagram icon
  • Pinterest icon

Latest in Retail

A Viking ship named Havhingsten af Glendalough - the Sea Stallion of Glendalough -, the world's largest replica of a Viking warship, sets out 01 JUly 2007 from the Viking Museum in Roskilde, Denmark, on a voyage to Dublin in Ireland, where it is scheduled to arrive 14 August.
EuropeScience
1,000-year-old massive textile factory unearthed in Denmark—and it belonged to the Vikings
By James Brooks and The Associated PressJune 24, 2026
7 hours ago
How ‘Ozempic face’ is pushing Gen X, already the biggest Botox and filler consumers, to the facelift table a decade early
HealthGen X
How ‘Ozempic face’ is pushing Gen X, already the biggest Botox and filler consumers, to the facelift table a decade early
By Mia OsmonbekovJune 24, 2026
7 hours ago
Institute's Global Conference at the Beverly Hilton Hotel,on May 6, 2024 in Beverly Hills, California.
RetailSpaceX
Elon Musk was the world’s first trillionaire for 12 days
By Eva RoytburgJune 24, 2026
8 hours ago
Mamdani’s picks sweep New York City’s congressional primaries, ousting two incumbents
PoliticsNew York
Mamdani’s picks sweep New York City’s congressional primaries, ousting two incumbents
By The Associated PressJune 24, 2026
12 hours ago
a
RetailAmazon
Amazon’s record Prime Day masks a darker truth: Americans are spending more and getting less
By Nick LichtenbergJune 24, 2026
13 hours ago
As marketers grapple with AI, business leaders at Cannes Lions say human creativity and authenticity matter more than ever 
Europecannes lions
As marketers grapple with AI, business leaders at Cannes Lions say human creativity and authenticity matter more than ever 
By Sam BirchallJune 24, 2026
16 hours ago

Most Popular

The Pentagon said Iran War costs $29 billion, but the real cost is closer to $200 billion—and counting
Economy
The Pentagon said Iran War costs $29 billion, but the real cost is closer to $200 billion—and counting
By Jacqueline MunisJune 24, 2026
21 hours ago
After forcing workers back to the office, Goldman Sachs and JPMorgan Chase are now letting their staff work remotely—but only for the World Cup
Success
After forcing workers back to the office, Goldman Sachs and JPMorgan Chase are now letting their staff work remotely—but only for the World Cup
By Orianna Rosa RoyleJune 23, 2026
2 days ago
Now worth $200 million, Sarah Jessica Parker credits being ‘one of eight kids that struggled financially’ for her hunger, ambition, and work ethic
Success
Now worth $200 million, Sarah Jessica Parker credits being ‘one of eight kids that struggled financially’ for her hunger, ambition, and work ethic
By Orianna Rosa RoyleJune 24, 2026
21 hours ago
Amazon's record Prime Day masks a darker truth: Americans are spending more and getting less
Retail
Amazon's record Prime Day masks a darker truth: Americans are spending more and getting less
By Nick LichtenbergJune 24, 2026
13 hours ago
Ray Dalio just finished a 10-day trip to China. He says global leaders know America ‘doesn’t have what it takes to fight to maintain its empire’
Asia
Ray Dalio just finished a 10-day trip to China. He says global leaders know America ‘doesn’t have what it takes to fight to maintain its empire’
By Nick LichtenbergJune 24, 2026
15 hours ago
Current price of gold as of June 23, 2026
Personal Finance
Current price of gold as of June 23, 2026
By Danny BakstJune 23, 2026
2 days ago

© 2026 Fortune Media IP Limited. All Rights Reserved. Use of this site constitutes acceptance of our Terms of Use and Privacy Policy | CA Notice at Collection and Privacy Notice | Do Not Sell/Share My Personal Information
FORTUNE is a trademark of Fortune Media IP Limited, registered in the U.S. and other countries. FORTUNE may receive compensation for some links to products and services on this website. Offers may be subject to change without notice.