Google disables Xiaomi smart home integration after major security breach

(Image credit: Google)

Update: Xiaomi has confirmed the issue and said that it has fixed the problem that some were experiencing. 

A spokesperson for Xiaomi told TechRadar, “We are aware there was an issue of receiving stills while connecting Mi Home Security Camera Basic 1080p on Google Home hub. We apologize for the inconvenience this has caused to our users.

"Our team has since acted immediately to solve the issue and it is now fixed. Upon investigation, we have found out the issue was caused by a cache update on December 26, 2019, which was designed to improve camera streaming quality. 

"This has only happened in extremely rare conditions. In this case, it happened during the integration between Mi Home Security Camera Basic 1080p and the Google Home Hub with a display screen under poor network conditions."

Xiaomi has confirmed that a potential 1044 users could have been affected by the issue. The company also said it would not be an issue if the camera is linked to the Xiaomi’s Mi Home app.

A fix for the issue has now been issued, and Xiaomi has suspended the whole service until the company is certain it has fixed the root cause.

Original story: After a user discovered that his Google Nest Hub was showing images from a stranger’s home when he tried to stream from his own Xiaomi security camera, the software giant has disabled any integration between its smart home systems and the Chinese tech manufacturer.

The instance was reported by Reddit user /r/Dio-V and was then picked up by Android Police. The tech news publication reached out to Google and received the following statement: “We’re aware of the issue and are in contact with Xiaomi to work on a fix. In the meantime, we’re disabling Xiaomi integrations on our devices."

Android Police then clarified that this does indeed mean that all Xiaomi Mi Home integration with Google Assistant has been disabled.

Specifically, /r/Dio-V was trying to view a live stream directly from his Xiaomi Mijia 1080p Smart IP Security Camera on the display of his Google Nest Hub but, instead, was shown a series of still images from other peoples’ homes.

The pictures were monochromatic and were sometimes partially corrupted, but they still showed sleeping children, full views of rooms and other private images in enough clarity to present a major security flaw.

As Xiaomi is yet to comment and an investigation from Google is still underway, it’s currently unclear exactly what occurred to cause the security breach, but we’ll likely find out in the coming days. Until then, users with Xiaomi Mi Home devices won't be able to use any Google Assistant functionality.

Harry Domanski
Harry is an Australian Journalist for TechRadar with an ear to the ground for future tech, and the other in front of a vintage amplifier. He likes stories told in charming ways, and content consumed through massive screens. He also likes to get his hands dirty with the ethics of the tech.
Latest in Home Security
Ring video doorbell on blue background with white text reading 'TechRadar don't miss'
Refurbished Ring doorbells are going cheap at Amazon, with up to 50% off good-as-new devices
Person opening door fitted with Nuki Smart Lock Pro (5th Gen)
This renter-friendly smart lock fits over your existing door hardware, and costs less than you might expect
Lorex 4K Battery Video Doorbell
I loved the aspect ratio of the Lorex 4K Battery Video Doorbell but not so much the battery
Eufy Familock S3 Max
Eufy's new camera smart lock covers blind spots your Ring doorbell might miss
Ring Stick Up Cam on blue background with white text reading 'TechRadar don't miss'
This Ring security camera lets you check your home any time on your phone, and it's 40% off at Amazon
4000 Series Matter-Compatible Smart Deadbolt installed on door
Philips' first Matter-compatible smart lock works with Apple HomeKit, Alexa, and Google Assistant seamlessly
Latest in News
Super Mario Odyssey
ChatGPT is the ultimate gaming tool - here's 4 ways you can use AI to help with your next playthrough
Ray-Ban smart glasses with the Cpperni logo, an LED array, and a MacBook Air with M4 next to ecah other.
ICYMI: the week's 7 biggest tech stories from Twitter's massive outage to iRobot's impressive new Roombas
Brad Pitt looks over his right shoulder with 'F1' written behind him
Apple Original Films will take you behind-the-scenes of a racing cockpit in this new thrilling F1 movie trailer
AI writer
Coding AI tells developer to write it himself
Reacher looking down at another character from the Prime Video TV series Reacher
Reacher season 3 becomes Prime Video’s biggest returning show thanks to Hollywood’s biggest heavyweight
Finger Presses Orange Button Domain Name Registration on Black Keyboard Background. Closeup View
I visited the world’s first registered .com domain – and you won’t believe what it’s offering today