Slovakia Warns of Cybersecurity Risks in Speed Cameras That Could Affect Vehicle Data and Government Networks

Views: 51 views

461/69 Tuesday, August 25, 2026

Slovakia’s National Security Authority (NBÚ) has issued a warning about risks associated with the use of several types of road speed cameras. The agency stated that these devices could pose a significant threat because they are network-connected systems that collect vehicle data, process license plate information, and communicate with other systems used by government agencies or related service providers. The warning follows NBÚ’s inspection of a sample NERO R-ONE camera system at the request of Slovakia’s Ministry of Interior. The products mentioned include NERO R-ONE, sold by Cyprus-based SODASUS; the Cordon speed camera family from Russia-based Simicon; and Cordon-family products sold by Croatia-based NEROline.

NBÚ’s inspection identified several risks beyond general configuration issues, including unclear origins of the actual hardware and software, inconsistencies between communication parameters stated in documentation and those observed in practice, software that did not match the declared version, preconfigured remote access and device management mechanisms, and insecure protective measures. Remote access capability is a key concern because devices of this type should remain under the control, inspection, and audit authority of the system owner. If remote access cannot be fully controlled or verified by the user organization, it could become a weakness in government networks or public service systems.

NBÚ warned that if attackers compromise speed cameras, they could access data stored on the devices, alter or delete evidentiary data, inject false measurements or violation reports, or cause the devices to stop functioning. If the network lacks proper segmentation, such devices could also be used as an initial access point to reach other systems in the network. The report did not state that all devices were used for surveillance or that a proven backdoor exists. Instead, it warned about risks identified during inspection, uncertainty over the supply chain, and remote management mechanisms that could not be fully verified. Agencies using connected devices in public systems should therefore verify the software and firmware actually installed, inspect remote access mechanisms, conduct external security testing, ensure secure update processes, and properly segment these devices from other critical systems.

Source: https://securityaffairs.com/197764/hacking/slovakia-warns-of-cyber-risks-in-road-speed-cameras.html